CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
SINGLE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:S/C:C/I:C/A:C
AI Score
Confidence
Low
EPSS
Percentile
95.4%
Stack-based buffer overflow in the SQL/PSM (aka SQL Persistent Stored Module) Stored Procedure (SP) infrastructure in IBM DB2 9.1, 9.5, 9.7 before FP7, 9.8, and 10.1 might allow remote authenticated users to execute arbitrary code by debugging a stored procedure.
Vendor | Product | Version | CPE |
---|---|---|---|
ibm | db2 | 9.1 | cpe:2.3:a:ibm:db2:9.1:*:*:*:*:*:*:* |
ibm | db2 | 9.5 | cpe:2.3:a:ibm:db2:9.5:*:*:*:*:*:*:* |
ibm | db2 | 9.7 | cpe:2.3:a:ibm:db2:9.7:*:*:*:*:*:*:* |
ibm | db2 | 9.7.0.1 | cpe:2.3:a:ibm:db2:9.7.0.1:*:*:*:*:*:*:* |
ibm | db2 | 9.7.0.2 | cpe:2.3:a:ibm:db2:9.7.0.2:*:*:*:*:*:*:* |
ibm | db2 | 9.7.0.3 | cpe:2.3:a:ibm:db2:9.7.0.3:*:*:*:*:*:*:* |
ibm | db2 | 9.7.0.4 | cpe:2.3:a:ibm:db2:9.7.0.4:*:*:*:*:*:*:* |
ibm | db2 | 9.7.0.5 | cpe:2.3:a:ibm:db2:9.7.0.5:*:*:*:*:*:*:* |
ibm | db2 | 9.7.0.6 | cpe:2.3:a:ibm:db2:9.7.0.6:*:*:*:*:*:*:* |
ibm | db2 | 9.8 | cpe:2.3:a:ibm:db2:9.8:*:*:*:*:*:*:* |
osvdb.org/86414
www-01.ibm.com/support/docview.wss?uid=swg1IC86765
www-01.ibm.com/support/docview.wss?uid=swg1IC86781
www-01.ibm.com/support/docview.wss?uid=swg1IC86782
www-01.ibm.com/support/docview.wss?uid=swg1IC86783
www-01.ibm.com/support/docview.wss?uid=swg1IC87192
www-01.ibm.com/support/docview.wss?uid=swg21450666
www-01.ibm.com/support/docview.wss?uid=swg21614536
www.securityfocus.com/bid/56133