CVE-2007-1228: Medium severity IBM DB2 vulnerability
Published Mar 2, 2007
·Updated
IBM DB2 UDB 8.2 before Fixpak 7 (aka fixpack 14), and DB2 9 before Fix Pack 2, on UNIX allows the "fenced" user to access certain unauthorized directories.
Affected Software
10 affected components
IBM DB2=8.2
IBM DB2=8.2-fp1
IBM DB2=8.2-fp2
IBM DB2=8.2-fp3
IBM DB2=8.2-fp4
IBM DB2=8.2-fp5
IBM DB2=8.2-fp6
IBM DB2=9.0
IBM DB2=9.0-fp1
Unix
Event History
Mar 2, 2007
CVE Published
10:19 PM
Data Sourced
10:19 PM
DescriptionWeaknessAffected Software
Mar 3, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-1228?
CVE-2007-1228 has a medium severity level due to unauthorized directory access risks.
2
How do I fix CVE-2007-1228?
To fix CVE-2007-1228, upgrade to IBM DB2 UDB 8.2 Fixpak 7 or DB2 9 Fix Pack 2 or later.
3
What versions of DB2 are affected by CVE-2007-1228?
CVE-2007-1228 affects IBM DB2 UDB version 8.2 prior to Fixpak 7 and DB2 version 9 prior to Fix Pack 2.
4
What is the impact of CVE-2007-1228 on system security?
The impact of CVE-2007-1228 includes potential unauthorized access to sensitive directories, compromising system integrity.
5
Can CVE-2007-1228 be exploited remotely?
Yes, CVE-2007-1228 can be exploited remotely by users with fenced access permissions.