The Stored Procedure infrastructure in IBM DB2 9.5, 9.7 before FP9a, 10.1 before FP3a, and 10.5 before FP3a on Windows allows remote authenticated users to gain privileges by leveraging the CONNECT privilege and the CREATE_EXTERNAL_ROUTINE authority.
Advisories
Source ID Title
EUVD EUVD EUVD-2013-6546 The Stored Procedure infrastructure in IBM DB2 9.5, 9.7 before FP9a, 10.1 before FP3a, and 10.5 before FP3a on Windows allows remote authenticated users to gain privileges by leveraging the CONNECT privilege and the CREATE_EXTERNAL_ROUTINE authority.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2024-08-06T17:46:23.476Z

Reserved: 2013-11-08T00:00:00

Link: CVE-2013-6744

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-05-30T23:55:02.457

Modified: 2025-04-12T10:46:40.837

Link: CVE-2013-6744

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.