CVE-2014-3094: Buffer Overflow
Stack-based buffer overflow in IBM DB2 9.7 through FP9a, 9.8 through FP5, 10.1 through FP4, and 10.5 before FP4 on Linux, UNIX, and Windows allows remote authenticated users to execute arbitrary code via a crafted ALTER MODULE statement.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-3094?
CVE-2014-3094 has a critical severity rating due to its ability to allow remote authenticated users to execute arbitrary code.
How do I fix CVE-2014-3094?
To fix CVE-2014-3094, users should apply the relevant IBM DB2 patches or updates released after the vulnerable versions.
What versions are affected by CVE-2014-3094?
CVE-2014-3094 affects IBM DB2 versions 9.7 through FP9a, 9.8 through FP5, 10.1 through FP4, and 10.5 before FP4.
Who can exploit CVE-2014-3094?
CVE-2014-3094 can be exploited by remote authenticated users with permission to execute ALTER MODULE statements.
What are the potential impacts of CVE-2014-3094?
The potential impacts of CVE-2014-3094 include unauthorized code execution and significant compromise of the affected DB2 database.