IBM Informix Dynamic Server Privilege Escalation Vulnerability in oninit Utility
Published Aug 12, 2026
7.8
HIGHCVSS 3.1
EPSS 0.14%
Description
IBM Informix Dynamic Server 14.10, and 15.0 contain a local privilege escalation vulnerability in the oninit setuid-root utility.
Affected products
-
Affected
- 14.10
- 15.0
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| IBM | Informix Dynamic Server | unknown | Affected
|
- 14.10
- 15.0
Running on/with
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
The issue has been fixed in IBM Informix versions 14.10.xC13W13 and 15.0.1.14.
* Fixes are available on IBM Fix Central - Select Fixes - Informix Server https://www.ibm.com/support/fixcentral/swg/selectFixes . * Follow the instructions for Database server upgrades https://www.ibm.com/docs/en/informix-servers/14.10 in the Informix Servers documentation.
References (2)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-57623 Advisory
- https://www.ibm.com/support/pages/node/7282829 vendor-advisorypatchVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-57623 | Advisory | |
| https://www.ibm.com/support/pages/node/7282829 | vendor-advisorypatchVendor Advisory |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
Red Hat
No data
GitHub
No data