Vulnerability Bulletins

IBM Security Bulletin: IBM® DB2® contains a sensitive information exposure vulnerability in the monitoring and audit feature (CVE-2014-0919)

   
Affected software IBM
 
IBM DB2 contains a sensitive information exposure vulnerability. A remote, authenticated DB2 user could exploit this vulnerability by executing a series of commands via the monitoring or audit facility to view sensitive data. CVE(s): CVE-2014-0919 Affected product(s) and affected version(s): All fix pack levels of IBM DB2 V9.5, V9.7, V10.1 and V10.5 editions listed below and running on AIX, Linux, HP, Solaris or Windows are affected. IBM® DB2® Express Edition IBM® DB2®

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_db2_contains_a_sensitive_information_exposure_vulnerability_in_the_monitoring_and_audit_feature_cve_2014_0919?lang=en_us