Boletines de Vulnerabilidades

IBM Security Bulletin: Infosphere BigInsights is affected by a vulnerability in DB2 that allows users to truncate any table even though the owner of the table has not granted any privilege to any user

   
Software afectado IBM
 
Infosphere BigInsights is affected by a vulnerability in DB2 that allows users to truncate any table even though the owner of the table has not granted any privilege to any user/role/group. (CVE-2015-5020). The vulnerability exists in the Big SQL server component included in BigInsights. CVE(s): CVE-2015-5020 Affected product(s) and affected version(s): IBM InfoSphere BigInsights: 3.0, 3.0.0.1, 3.0.0.2, 4.0 Refer to the following reference URLs for remediation and additional

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_infosphere_biginsights_is_affected_by_a_vulnerability_in_db2_that_allows_users_to_truncate_any_table_even_though_the_owner_of_the_table_has_not_granted_any_privilege_to_any_u