CVE-2012-2197: Buffer Overflow
Stack-based buffer overflow in the Java Stored Procedure infrastructure in IBM DB2 9.1 before FP12, 9.5 through FP9, 9.7 through FP6, 9.8 through FP5, and 10.1 allows remote authenticated users to execute arbitrary code by leveraging certain CONNECT and EXECUTE privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2197?
CVE-2012-2197 has a high severity rating due to the potential for remote authenticated users to execute arbitrary code.
How do I fix CVE-2012-2197?
To fix CVE-2012-2197, upgrade IBM DB2 to an appropriate version that includes the necessary security patches.
Which versions of IBM DB2 are affected by CVE-2012-2197?
CVE-2012-2197 affects IBM DB2 versions 9.1 before FP12, 9.5 through FP9, 9.7 through FP6, 9.8 through FP5, and 10.1.
What are the potential impacts of CVE-2012-2197?
The potential impacts of CVE-2012-2197 include unauthorized execution of arbitrary code, which could compromise the database and the information it holds.
Who can exploit CVE-2012-2197?
CVE-2012-2197 can be exploited by remote authenticated users who have specific CONNECT and EXECUTE privileges.