cbcvebase.
CVE-2007-1027
published 2007-02-21

CVE-2007-1027: Certain setuid DB2 binaries in IBM DB2 before 9 Fix Pack 2 for Linux and Unix allow local users to overwrite arbitrary files via a symlink attack on the…

medium4.4CVSS 3.1
AVLACMAuNCPIPAP
Certain setuid DB2 binaries in IBM DB2 before 9 Fix Pack 2 for Linux and Unix allow local users to overwrite arbitrary files via a symlink attack on the DB2DIAG.LOG temporary file.

Affected

1 ranges
VendorProductVersion rangeFixed in
ibmdb2
CVE-2007-1027 — Link Following in IBM DB2 | cvebase