Untrusted search path vulnerability in IBM DB2 9.7 through FP11,...
Vulnerability Description
Untrusted search path vulnerability in IBM DB2 9.7 through FP11, 10.1 through FP5, 10.5 before FP8, and 11.1 GA on Linux, AIX, and HP-UX allows local users to gain privileges via a Trojan horse library that is accessed by a setuid or setgid program.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-5995
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www-01.ibm.com/support/docview.wss?uid=swg1IT17012
- http://www-01.ibm.com/support/docview.wss?uid=swg1IT16921
- http://www.securitytracker.com/id/1036837
- http://www.securityfocus.com/bid/93012
- http://www-01.ibm.com/support/docview.wss?uid=swg1IT17010
- http://www-01.ibm.com/support/docview.wss?uid=swg21990061
- http://www-01.ibm.com/support/docview.wss?uid=swg1IT17011
More from ibm
View All →Affected Vendor
Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.