Security Advisory

CVE-2018-1781

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-11-09 00:00:00
Last updated 2024-09-17 03:28:49
Assigner ibm
State PUBLISHED

Description

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local user to obtain root access by exploiting a symbolic link attack to read/write/corrupt a file that they originally did not have permission to access. IBM X-Force ID: 148804.