CVE ID | |
CVSS SCORE | 9.0, AV:N/AC:L/Au:N/C:P/I:P/A:C |
AFFECTED VENDORS |
IBM |
AFFECTED PRODUCTS |
DB2 Universal Database |
VULNERABILITY DETAILS |
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of IBM DB2. Authentication is not required to exploit this vulnerability. The flaw exists within the db2dasrrm component which listens by default on TCP port 524. When allocating a buffer within receiveDASMessage a user supplied length is used as a parameter to malloc(). This buffer is later copied into without any bounds checking and can be made to overflow. A remote attacker can exploit this vulnerability to execute arbitrary code under the context of the das user user. |
ADDITIONAL DETAILS |
v9.1 fp10 v9.5 fp7 v9.7 fp3a |
DISCLOSURE TIMELINE |
|
CREDIT | Anonymous |