Vulnerability Name: | CVE-2019-4094 (CCN-158014) | ||||||||||||
Assigned: | 2019-03-12 | ||||||||||||
Published: | 2019-03-12 | ||||||||||||
Updated: | 2023-01-30 | ||||||||||||
Summary: | |||||||||||||
CVSS v3 Severity: | 7.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H) 6.8 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
7.3 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2019-4094 Source: CCN Type: IBM Security Bulletin 882974 (Spectrum Protect) Multiple Db2 vulnerabilities affect the IBM Spectrum Protect Server (CVE-2018-1922, CVE-2018-1923, CVE-2018-1936, CVE-2018-1978, CVE-2018-1980, CVE-2019-4014, CVE-2019-4015, CVE-2019-4016, CVE-2019-4094) Source: psirt@us.ibm.com Type: Vendor Advisory, VDB Entry psirt@us.ibm.com Source: XF Type: UNKNOWN ibm-db2-cve20194094-priv-escalation(158014) Source: CCN Type: IBM Security Bulletin 875860 (DB2 for Linux, UNIX and Windows) IBM Db2 is vulnerable to privilege escalation via loading libraries from an untrusted path (CVE-2019-4094). Source: psirt@us.ibm.com Type: Patch, Vendor Advisory psirt@us.ibm.com Source: CCN Type: IBM Security Bulletin 6569247 (PureData System for Operational Analytics) One or more security vulnerabilities has been identified in IBM DB2 shipped with IBM PureData System for Operational Analytics (CVE-2018-1980,CVE-2019-4094,CVE-2018-1922,CVE-2018-1978,CVE-2018-1923,CVE-2019-4016,CVE-2019-4015) | ||||||||||||
Vulnerable Configuration: | Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
BACK |