Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

IBM DB2 Multiple Command-line Format String Vulnerabilities

Multiple command-line parameter format string vulnerabilities have been discovered in various IBM DB2 binaries. Specifically, format-based functions are implemented erroneously within the db2govd, db2start, and db2stop programs. These binaries are typically installed setuid. As a result, a malicious local user may be capable of gaining elevate privileges.







 

Privacy Statement
Copyright 2009, SecurityFocus