Boletines de Vulnerabilidades

IBM Security Bulletin: IBM® DB2® LUW contains a vulnerability in which an ALTER TABLE statement may cause the DB2 server to terminate abnormally when AUTO_REVAL is set to IMMEDIATE . (CVE-2014


Información sobre el sistema

   
Software afectado IBM

Descripción

IBM DB2 contains a vulnerability in which an ALTER TABLE statement may cause the DB2 server to terminate abnormally when AUTO_REVAL is set to IMMEDIATE . This could result in a DB2 server crash; if so, the server would need to be restarted. CVE(s): CVE-2014-6159 Affected product(s) and affected version(s): All fix pack levels of IBM DB2 V9.7, V10.1 and V10.5 editions listed below and running on AIX, Linux, HP, Solaris or Windows are affected. IBM® DB2® Express Edition IBM®

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_db2_luw_contains_a_vulnerability_in_which_an_alter_table_statement_may_cause_the_db2_server_to_terminate_abnormally_when_auto_reval_is_set_to_immediate_cve_2014_6159?lang

Identificadores estándar

Propiedad Valor
CVE CVE-2014-6159 ,CVE-2014-3513 ,CVE-2014-3567 ,CVE-2014-3566 ,CVE-2014-3568 and CVE-2014-6097.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-11-08

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT