IBM Security Bulletin: Db2 vulnerability affects the IBM Spectrum Protect Server (CVE-2018-1448)

The IBM Spectrum Protect Server is affected by an IBM Db2 vulnerability that could allow a local user to overwrite arbitrary files owned by the Db2 instance owner.

CVE(s): CVE-2018-1448

Affected product(s) and affected version(s):

This vulnerability affects the IBM Spectrum Protect Server 8.1.0.0 through 8.1.5.x.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10729863
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/140043

The post IBM Security Bulletin: Db2 vulnerability affects the IBM Spectrum Protect Server (CVE-2018-1448) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ift.tt/2I5F9qP