CVE-2018-1978: Buffer Overflow
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an authenticated local attacker to execute arbitrary code on the system as root. IBM X-ForceID: 154069.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1978?
CVE-2018-1978 is considered high severity due to its potential to allow authenticated local attackers to execute arbitrary code as root.
How do I fix CVE-2018-1978?
To fix CVE-2018-1978, you should update your IBM DB2 installation to the latest version where this vulnerability is patched.
Who is affected by CVE-2018-1978?
CVE-2018-1978 affects users of IBM DB2 versions 9.7, 10.1, 10.5, and 11.1.
Can CVE-2018-1978 be exploited remotely?
No, CVE-2018-1978 can only be exploited by authenticated local attackers, not remotely.
What kind of attack can CVE-2018-1978 enable?
CVE-2018-1978 can enable an authenticated local attacker to execute arbitrary code on the system as root.