First published: Fri Dec 31 2004(Updated: )
Buffer overflow in IBM Informix Dynamic Server (IDS) 9.40.xC1 and 9.40.xC2 allows local users to execute arbitrary code via a long GL_PATH environment variable.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Informix Dynamic Server | =9.40.uc2 | |
Ibm Informix Extended Parallel Server | =8.40_uc1 | |
IBM Informix Dynamic Server | =9.40.uc1 | |
Ibm Informix Extended Parallel Server | =8.40_uc2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-2490 has a high severity rating due to the potential for local users to execute arbitrary code.
To fix CVE-2004-2490, update your IBM Informix Dynamic Server to the latest version that addresses this vulnerability.
CVE-2004-2490 affects IBM Informix Dynamic Server 9.40.xC1, 9.40.xC2, and Informix Extended Parallel Server 8.40_uc1 and 8.40_uc2.
CVE-2004-2490 allows local users to exploit a buffer overflow vulnerability to execute arbitrary code.
Yes, CVE-2004-2490 involves a buffer overflow triggered by a long GL_PATH environment variable.