CVE-2021-39049: Buffer Overflow
Published Dec 13, 2021
·Updated
IBM i2 Analyst's Notebook 9.2.0, 9.2.1, and 9.2.2 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A local attacker could overflow a buffer and gain lower level privileges. IBM X-Force ID: 214439.
Affected Software
1 affected component
IBM i2 Analysts Notebook
Event History
Dec 13, 2021
CVE Published
via MITRE·06:35 PM
Data Sourced
via MITRE·06:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
How does IBM i2 Analyst's Notebook 9.2.0, 9.2.1, and 9.2.2 get affected by CVE-2021-39049?
It is vulnerable to a stack-based buffer overflow due to improper bounds checking.
2
What is the severity of CVE-2021-39049 vulnerability in IBM i2 Analyst's Notebook?
The severity is rated as high with a CVSS score of 7.8.
3
What can a local attacker achieve by exploiting CVE-2021-39049 in IBM i2 Analyst's Notebook?
They could overflow a buffer and gain lower level privileges.
4
Is there a fix available for CVE-2021-39049 in IBM i2 Analyst's Notebook?
Refer to IBM support pages for mitigation details.