IBM Security Bulletin: Privilege escalation vulnerabilities affect IBM® Db2® (CVE-2017-1438)

Vulnerabilities in IBM Db2 could allow a local user to gain elevated privilege.

CVE(s): CVE-2017-1438

Affected product(s) and affected version(s):

All fix pack levels of IBM Db2 V9.7, V10.1, V10.5, and V11.1 server editions running on AIX, Linux, HP, Solaris are affected. Db2 running on Windows is not vulnerable.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2gNOCWk
X-Force Database: http://ift.tt/2wQyVab

The post IBM Security Bulletin: Privilege escalation vulnerabilities affect IBM® Db2® (CVE-2017-1438) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2wgszxj