CVE-2007-1086
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/02/2007
Last modified:
09/04/2025
Description
Unspecified binaries in IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 allow local users to create or modify arbitrary files via unspecified environment variables related to "unsafe file access."
Impact
Base Score 2.0
7.20
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:hp:hp-ux:*:*:*:*:*:*:*:* | ||
| cpe:2.3:o:ibm:aix:*:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.18.0:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.18.1:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.18.2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.18.3:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.18.4:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.18.5:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.18.6:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.18.7:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.19:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.19.1:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.19.2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.19.3:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:2.6.19.4:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=481
- http://osvdb.org/40969
- http://www-1.ibm.com/support/docview.wss?uid=swg21255747
- http://www.attrition.org/pipermail/vim/2007-August/001765.html
- http://www.securityfocus.com/bid/22677
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32650
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=481
- http://osvdb.org/40969
- http://www-1.ibm.com/support/docview.wss?uid=swg21255747
- http://www.attrition.org/pipermail/vim/2007-August/001765.html
- http://www.securityfocus.com/bid/22677
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32650



