CVE-2010-3738: Medium severity IBM DB2 vulnerability
The Security component in IBM DB2 UDB 9.5 before FP6a logs AUDIT events by using a USERID and an AUTHID value corresponding to the instance owner, instead of a USERID and an AUTHID value corresponding to the logged-in user account, which makes it easier for remote authenticated users to execute Audit administration commands without discovery.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3738?
CVE-2010-3738 is rated as a medium severity vulnerability due to its potential impact on user account auditing.
How do I fix CVE-2010-3738?
To fix CVE-2010-3738, apply the appropriate fix pack or update for IBM DB2 UDB version 9.5, ensuring you reach at least FP6a.
Which versions of IBM DB2 UDB are affected by CVE-2010-3738?
CVE-2010-3738 affects IBM DB2 UDB 9.5 and all fix packs prior to FP6a.
What type of attack does CVE-2010-3738 allow?
CVE-2010-3738 potentially allows remote authenticated users to escalate privileges by manipulating audit logs.
Is there a workaround for CVE-2010-3738?
There is no widely recommended workaround for CVE-2010-3738; updating to the latest fix pack is advised.