← Back

CVE-2007-1087

nvd nist
Published: Feb 23, 2007Modified: Apr 23, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 does not properly terminate certain input strings, which allows local users to execute arbitrary code via unspecified environment variables that trigger a heap-based buffer overflow.

Affected (20)

Products: Ibm: Db2
1 product
Db2
Configuration A
20 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 8.0
Version 8.0 fp13
Version 8.0 fp14
Version 8.0 fp8
Version 8.0 fp9
Version 8.1.4
Version 8.1.5
Version 8.1.6
Version 8.1.6c
Version 8.1.7
Version 8.1.7b
Version 8.1.8
Version 8.1.8a
Version 8.1.9
Version 8.1.9a
Version 8.1
Version 8.1 fp13
Version 8.1 fp14
Version 9.1
Version 9.1 fp1

References (12)

Source: cve@mitre.org
Broken Link
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
PatchThird Party AdvisoryVDB Entry
Source: cve@mitre.org
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry

Timeline

No history available yet.