CVE-2022-22483: Medium severity ibm db2 vulnerability
IBM Db2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to an information disclosure in some scenarios due to unauthorized access caused by improper privilege management when CREATE OR REPLACE command is used. IBM X-Force ID: 225979.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-22483.
What is the severity level of CVE-2022-22483?
The severity level of CVE-2022-22483 is medium with a severity value of 6.5.
Which versions of IBM Db2 are affected by CVE-2022-22483?
Versions 9.7, 10.1, 10.5, 11.1, and 11.5 of IBM Db2 for Linux, UNIX, and Windows are affected by CVE-2022-22483.
What is the cause of CVE-2022-22483?
CVE-2022-22483 is caused by unauthorized access due to improper privilege management when using the CREATE OR REPLACE command.
Are other operating systems vulnerable to CVE-2022-22483?
No, other operating systems such as HP-UX, IBM AIX, Linux kernel, Microsoft Windows, and Oracle Solaris are not vulnerable to CVE-2022-22483.