Security Restriction Bypass Vulnerability for multiple IBM DB2 products (CVE-2015-1922)
Security Restriction Bypass Vulnerability for multiple IBM DB2 products (CVE-2015-1922)
Release date:
Updated on:
Affected Systems:
IBM DB2 Connect Enterprise Edition 9.7
IBM DB2 Connect Unlimited Edition for System z 9.7
IBM DB2 Connect Unlimited version for System I 9.7
Description:
Bugtraq id: 75911
CVE (CAN) ID: CVE-2015-1922
IBM DB2 is a large commercial relational database system.
Multiple IBM DB2 products have the Security Restriction Bypass Vulnerability. After successful exploitation, attackers can bypass the security restriction and perform unauthorized operations.
<* Source: IBM (ncsupp@ca.ibm.com)
*>
Suggestion:
Vendor patch:
IBM
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.ibm.com/support/fixcentral/
This article permanently updates the link address: