IBM Security Bulletin: IBM® Db2® vulnerability allows local user to overwrite Db2 files (CVE-2018-1448)

A vulnerability in IBM Db2 could allow a local user to obtain elevated privilege and overwrite Db2 files.

CVE(s): CVE-2018-1448

Affected product(s) and affected version(s):

All fix pack levels of IBM Db2 V9.7, V10.1, V10.5, and V11.1 editions on all platforms except Windows are affected.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg22014388
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/140043

The post IBM Security Bulletin: IBM® Db2® vulnerability allows local user to overwrite Db2 files (CVE-2018-1448) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2Dx7aDu