Vulnerability Database

290,278

Total vulnerabilities in the database

CVE-2016-5995

Untrusted search path vulnerability in IBM DB2 9.7 through FP11, 10.1 through FP5, 10.5 before FP8, and 11.1 GA on Linux, AIX, and HP-UX allows local users to gain privileges via a Trojan horse library that is accessed by a setuid or setgid program.

  • Published: Oct 1, 2016
  • Updated: Apr 13, 2023
  • CVE: CVE-2016-5995
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.3
  • AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

CVSS v2:

  • Severity: Medium
  • Score: 6.9
  • AV:L/AC:M/Au:N/C:C/I:C/A:C

CWEs:

Software From Fixed in
ibm / db2 9.7 9.7.x
ibm / db2 9.7.0.1 9.7.0.1.x
ibm / db2 9.7.0.2 9.7.0.2.x
ibm / db2 9.7.0.3 9.7.0.3.x
ibm / db2 9.7.0.4 9.7.0.4.x
ibm / db2 9.7.0.5 9.7.0.5.x
ibm / db2 9.7.0.6 9.7.0.6.x
ibm / db2 9.7.0.7 9.7.0.7.x
ibm / db2 9.7.0.8 9.7.0.8.x
ibm / db2 9.7.0.9 9.7.0.9.x
ibm / db2 9.7.0.10 9.7.0.10.x
ibm / db2 9.7.0.11 9.7.0.11.x
ibm / db2 10.1 10.1.x
ibm / db2 10.1.0.1 10.1.0.1.x
ibm / db2 10.1.0.2 10.1.0.2.x
ibm / db2 10.1.0.3 10.1.0.3.x
ibm / db2 10.1.0.4 10.1.0.4.x
ibm / db2 10.1.0.5 10.1.0.5.x
ibm / db2 10.5 10.5.x
ibm / db2 10.5.0.1 10.5.0.1.x
ibm / db2 10.5.0.2 10.5.0.2.x
ibm / db2 10.5.0.3 10.5.0.3.x
ibm / db2 10.5.0.4 10.5.0.4.x
ibm / db2 10.5.0.5 10.5.0.5.x
ibm / db2 10.5.0.6 10.5.0.6.x
ibm / db2 10.5.0.7 10.5.0.7.x
ibm / db2 11.1.0.0 11.1.0.0.x
ibm / db2_connect 9.7 9.7.x
ibm / db2_connect 9.7.0.1 9.7.0.1.x
ibm / db2_connect 9.7.0.2 9.7.0.2.x
ibm / db2_connect 9.7.0.3 9.7.0.3.x
ibm / db2_connect 9.7.0.4 9.7.0.4.x
ibm / db2_connect 9.7.0.5 9.7.0.5.x
ibm / db2_connect 9.7.0.6 9.7.0.6.x
ibm / db2_connect 9.7.0.7 9.7.0.7.x
ibm / db2_connect 9.7.0.8 9.7.0.8.x
ibm / db2_connect 9.7.0.9 9.7.0.9.x
ibm / db2_connect 9.7.0.10 9.7.0.10.x
ibm / db2_connect 9.7.0.11 9.7.0.11.x
ibm / db2_connect 10.1 10.1.x
ibm / db2_connect 10.1.0.1 10.1.0.1.x
ibm / db2_connect 10.1.0.2 10.1.0.2.x
ibm / db2_connect 10.1.0.3 10.1.0.3.x
ibm / db2_connect 10.1.0.4 10.1.0.4.x
ibm / db2_connect 10.1.0.5 10.1.0.5.x
ibm / db2_connect 10.5 10.5.x
ibm / db2_connect 10.5.0.1 10.5.0.1.x
ibm / db2_connect 10.5.0.2 10.5.0.2.x
ibm / db2_connect 10.5.0.3 10.5.0.3.x
ibm / db2_connect 10.5.0.4 10.5.0.4.x
ibm / db2_connect 10.5.0.5 10.5.0.5.x
ibm / db2_connect 10.5.0.6 10.5.0.6.x
ibm / db2_connect 10.5.0.7 10.5.0.7.x
ibm / db2_connect 11.1.0.0 11.1.0.0.x