First published: Thu Jun 24 2021(Updated: )
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow a local user to access and change the configuration of Db2 due to a race condition of a symbolic link,. IBM X-Force ID: 190909.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Db2 | =11.5 | |
IBM AIX | ||
Linux Linux kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-4885 is medium with a severity value of 4.7.
IBM Db2 for Linux, UNIX, and Windows version 11.5 is affected by CVE-2020-4885.
A local user can exploit CVE-2020-4885 to access and change the configuration of Db2 through a race condition of a symbolic link.
No, IBM AIX is not vulnerable to CVE-2020-4885.
No, Linux Linux kernel is not vulnerable to CVE-2020-4885.