CVE-2017-1434

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
12/09/2017
Last modified:
20/04/2025

Description

IBM DB2 for Linux, UNIX and Windows 11.1 (includes DB2 Connect Server) under unusual circumstances, could expose highly sensitive information in the error log to a local user.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:db2:11.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:11.1.0.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*