MEDIUM
The Client Interfaces component in IBM DB2 8.2 before FP18, 9.1 before FP8, 9.5 before FP5, and 9.7 before FP1 does not validate an unspecified pointer, which allows attackers to overwrite "external memory" via unknown vectors, related to a missing "check for null pointers."
Published Dec 16, 2009
6.4
MEDIUMCVSS 2.0
EPSS 2.65%
Description
The Client Interfaces component in IBM DB2 8.2 before FP18, 9.1 before FP8, 9.5 before FP5, and 9.7 before FP1 does not validate an unspecified pointer, which allows attackers to overwrite "external memory" via unknown vectors, related to a missing "check for null pointers."
Affected products
No data.
OR
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 8.2
- 9.1
- 9.1
- 9.1
- 9.1
- 9.1
- 9.1
- 9.1
- 9.1
- 9.1
- 9.1
- 9.1
- 9.5
- 9.5
- 9.5
- 9.5
- 9.5
- 9.5
- 9.5
- 9.7
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (13)
- ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v82/APARLIST.TXT x_refsource_CONFIRMPatch
- ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v91/APARLIST.TXT x_refsource_CONFIRM
- ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v95/APARLIST.TXT x_refsource_CONFIRM
- ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v97/APARLIST.TXT x_refsource_CONFIRM
- http://secunia.com/advisories/37759 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg1IC64702 vendor-advisoryx_refsource_AIXAPAR
- http://www-01.ibm.com/support/docview.wss?uid=swg1LI72709 vendor-advisoryx_refsource_AIXAPARExploitVendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg1LI74500 vendor-advisoryx_refsource_AIXAPARExploitVendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg1LI74504 vendor-advisoryx_refsource_AIXAPAR
- http://www-01.ibm.com/support/docview.wss?uid=swg21293566 x_refsource_CONFIRMPatchVendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21412902 x_refsource_CONFIRM
- http://www.securityfocus.com/bid/37332 vdb-entryx_refsource_BID
- http://www.vupen.com/english/advisories/2009/3520 vdb-entryx_refsource_VUPENVendor Advisory
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Dec 16, 2009
Updated Sep 17, 2024
Reserved Dec 16, 2009
Link CVE-2009-4325
CISA Vulnrichment
Updated n/a