CVE-2009-4331: High severity ibm db2 universal database vulnerability
The Install component in IBM DB2 9.5 before FP5 and 9.7 before FP1 configures the High Availability (HA) scripts with incorrect file-permission and authorization settings, which has unknown impact and local attack vectors.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-4331?
The severity of CVE-2009-4331 is not explicitly rated, but it involves improper file permissions that could lead to potential vulnerabilities.
How do I fix CVE-2009-4331?
Fixing CVE-2009-4331 involves updating IBM DB2 to versions 9.5 FP5 or 9.7 FP1 or later, where the issue is addressed.
What systems are affected by CVE-2009-4331?
CVE-2009-4331 affects IBM DB2 versions 9.5 before FP5 and 9.7 before FP1.
What are the risks associated with CVE-2009-4331?
The risks associated with CVE-2009-4331 can include unauthorized access to sensitive files due to insecure file permissions.
Who should be concerned about CVE-2009-4331?
Administrators and users of affected IBM DB2 versions should be concerned about CVE-2009-4331 and take steps to mitigate the risk.