CVE-2012-2194
25.07.2012, 10:42
Directory traversal vulnerability in the SQLJ.DB2_INSTALL_JAR stored procedure in IBM DB2 9.1 before FP12, 9.5 through FP9, 9.7 through FP6, 9.8 through FP5, and 10.1 allows remote attackers to replace JAR files via unspecified vectors.
| Vendor | Product | Version |
|---|---|---|
| ibm | db2 | 9.1 |
| ibm | db2 | 9.1.0.1 |
| ibm | db2 | 9.1.0.2 |
| ibm | db2 | 9.1.0.2:a |
| ibm | db2 | 9.1.0.3 |
| ibm | db2 | 9.1.0.3:a |
| ibm | db2 | 9.1.0.4 |
| ibm | db2 | 9.1.0.4:a |
| ibm | db2 | 9.1.0.5 |
| ibm | db2 | 9.1.0.6 |
| ibm | db2 | 9.1.0.6:a |
| ibm | db2 | 9.1.0.7 |
| ibm | db2 | 9.1.0.7:a |
| ibm | db2 | 9.1.0.8 |
| ibm | db2 | 9.1.0.9 |
| ibm | db2 | 9.1.0.10 |
| ibm | db2 | 9.1.0.11 |
| ibm | db2 | 9.5 |
| ibm | db2 | 9.5.0.1 |
| ibm | db2 | 9.5.0.2 |
| ibm | db2 | 9.5.0.2:a |
| ibm | db2 | 9.5.0.3 |
| ibm | db2 | 9.5.0.3:a |
| ibm | db2 | 9.5.0.3:b |
| ibm | db2 | 9.5.0.4 |
| ibm | db2 | 9.5.0.4:a |
| ibm | db2 | 9.5.0.5 |
| ibm | db2 | 9.5.0.6:a |
| ibm | db2 | 9.5.0.7 |
| ibm | db2 | 9.5.0.8 |
| ibm | db2 | 9.5.0.9 |
| ibm | db2 | 9.7 |
| ibm | db2 | 9.7.0.1 |
| ibm | db2 | 9.7.0.2 |
| ibm | db2 | 9.7.0.3 |
| ibm | db2 | 9.7.0.4 |
| ibm | db2 | 9.7.0.5 |
| ibm | db2 | 9.7.0.6 |
| ibm | db2 | 9.8 |
| ibm | db2 | 9.8.0.3 |
| ibm | db2 | 9.8.0.4 |
| ibm | db2 | 9.8.0.5 |
| ibm | db2 | 10.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References