First published: Fri Mar 02 2007(Updated: )
IBM DB2 UDB 8.2 before Fixpak 7 (aka fixpack 14), and DB2 9 before Fix Pack 2, on UNIX allows the "fenced" user to access certain unauthorized directories.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Db2 | =8.2 | |
Ibm Db2 | =8.2-fp1 | |
Ibm Db2 | =8.2-fp2 | |
Ibm Db2 | =8.2-fp3 | |
Ibm Db2 | =8.2-fp4 | |
Ibm Db2 | =8.2-fp5 | |
Ibm Db2 | =8.2-fp6 | |
Ibm Db2 | =9.0 | |
Ibm Db2 | =9.0-fp1 | |
UNIX UNIX |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1228 has a medium severity level due to unauthorized directory access risks.
To fix CVE-2007-1228, upgrade to IBM DB2 UDB 8.2 Fixpak 7 or DB2 9 Fix Pack 2 or later.
CVE-2007-1228 affects IBM DB2 UDB version 8.2 prior to Fixpak 7 and DB2 version 9 prior to Fix Pack 2.
The impact of CVE-2007-1228 includes potential unauthorized access to sensitive directories, compromising system integrity.
Yes, CVE-2007-1228 can be exploited remotely by users with fenced access permissions.