First published: Mon Dec 04 2023(Updated: )
IBM Informix Dynamic Server 12.10 and 14.10 cdr is vulnerable to a heap buffer overflow, caused by improper bounds checking which could allow a local user to cause a segmentation fault. IBM X-Force ID: 251206.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Informix Dynamic Server | <=12.10 | |
IBM Informix Dynamic Server | <=14.10 | |
IBM Informix Dynamic Server on Cloud Pak for Data | <=All | |
IBM Informix Dynamic Server | =12.10 | |
IBM Informix Dynamic Server | =14.10 | |
IBM Informix Dynamic Server on Cloud Pak for Data |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this IBM Informix Dynamic Server vulnerability is CVE-2023-28527.
The title of this vulnerability is 'IBM Informix Dynamic Server buffer overflow.'
The severity of this vulnerability is medium, with a severity value of 6.2.
The affected software is IBM Informix Dynamic Server 12.10 and 14.10, as well as IBM Informix Dynamic Server on Cloud Pak for Data.
This vulnerability manifests as a heap buffer overflow, caused by improper bounds checking, which could allow a local user to cause a segmentation fault.
Yes, you can find more information about this vulnerability at the following references: [IBM Support](https://www.ibm.com/support/pages/node/7070188) and [IBM X-Force](https://exchange.xforce.ibmcloud.com/vulnerabilities/251206).
This vulnerability is associated with CWE-119 and CWE-122.