CVE-2007-4418: Medium severity IBM DB2 Universal Database vulnerability
Published Aug 18, 2007
·Updated
IBM DB2 UDB 8 before Fixpak 15 does not properly check authorization, which allows remote authenticated users with a certain SELECT privilege to have an unknown impact via unspecified vectors. NOTE: this issue is probably related to CVE-2007-1089, but this is uncertain due to lack of details.
Affected Software
1 affected component
IBM DB2 Universal Database<=8.0
Remediation
Patch Available
Event History
Aug 18, 2007
CVE Published
09:17 PM
Aug 19, 2007
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4418?
CVE-2007-4418 is considered to have an unknown impact severity due to insufficient details on the exploitation vectors.
2
How do I fix CVE-2007-4418?
To fix CVE-2007-4418, you should upgrade IBM DB2 Universal Database to version 8 FixPak 15 or later.
3
Who is affected by CVE-2007-4418?
CVE-2007-4418 affects IBM DB2 UDB versions before FixPak 15.
4
What causes CVE-2007-4418?
CVE-2007-4418 is caused by improper authorization checks in IBM DB2 UDB.
5
Is CVE-2007-4418 related to any other vulnerabilities?
Yes, CVE-2007-4418 is probably related to CVE-2007-1089, although the specifics are uncertain.