CVE-2015-1922: Low severity ibm db2 universal database vulnerability
The Data Movement implementation in IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote authenticated users to bypass intended access restrictions and delete table rows via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1922?
CVE-2015-1922 has a medium severity rating due to its potential impact on database integrity.
How do I fix CVE-2015-1922?
To fix CVE-2015-1922, upgrade IBM DB2 to versions 9.7 FP11, 9.8 FP6, 10.1 FP5, or 10.5 FP6 or later.
What versions of IBM DB2 are affected by CVE-2015-1922?
Affected versions include IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5.
Can CVE-2015-1922 allow unauthorized data deletion?
Yes, CVE-2015-1922 allows remote authenticated users to bypass access restrictions and delete table rows.
Is CVE-2015-1922 specific to certain operating systems?
CVE-2015-1922 affects IBM DB2 installations on Linux, UNIX, and Windows platforms.