IBM DB2 CVE-2017-1452 Local Privilege Escalation Vulnerability
BID:100698
CVE-2017-1452 |Info
IBM DB2 CVE-2017-1452 Local Privilege Escalation Vulnerability
| Bugtraq ID: | 100698 |
| Class: | Input Validation Error |
| CVE: |
CVE-2017-1452 |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 07 2017 12:00AM |
| Updated: | Oct 15 2018 12:00PM |
| Credit: | Rich Mirch |
| Vulnerable: |
IBM DB2 11.1.2 IBM DB2 9.7 IBM DB2 11.1 IBM DB2 10.5 IBM DB2 10.1 IBM DB2 10.1 |
| Not Vulnerable: |
IBM DB2 9.7 FP11 IBM DB2 11.1.2.2 FP2 IBM DB2 10.5 FP8 IBM DB2 10.1 FP6 |
Discussion
IBM DB2 CVE-2017-1452 Local Privilege Escalation Vulnerability
IBM DB2 products is prone to a local privilege escalation vulnerability.
A local attacker can exploit this vulnerability to overwrite Db2 files with elevated privileges.
IBM DB2 products is prone to a local privilege escalation vulnerability.
A local attacker can exploit this vulnerability to overwrite Db2 files with elevated privileges.
Exploit / POC
IBM DB2 CVE-2017-1452 Local Privilege Escalation Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
IBM DB2 CVE-2017-1452 Local Privilege Escalation Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
IBM DB2 CVE-2017-1452 Local Privilege Escalation Vulnerability
References:
References: