cbcvebase.
CVE-2021-20579
published 2021-06-24

CVE-2021-20579: IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a user who can create a view or inline SQL…

medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a user who can create a view or inline SQL function to obtain sensitive information when AUTO_REVAL is set to DEFFERED_FORCE. IBM X-Force ID: 199283.

Affected

5 ranges
VendorProductVersion rangeFixed in
ibmdb2
ibmdb2
ibmdb2
ibmdb2
ibmdb2