CVE Published: 11/03/2021 |
CVE Updated: 16/09/2024 |
CVE Year: 2020 Source: ibm |
Vendor: IBM |
Product: DB2 for Linux, UNIX and Windows Status : PUBLISHED
CVE-2020-5025 Description
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 db2fm is vulnerable to a buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code on the system with root privileges. IBM X-Force ID: 193661.