Description
IBM DB2 Merge Backup for Linux, UNIX and Windows 12.1.0.0 could allow an attacker to access sensitive information in memory due to the buffer not properly clearing resources.
Published: 2026-02-17
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Please download and install Interim Fix 12.1.0.0.1 from Fix Central

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 26 Feb 2026 22:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-226

Mon, 23 Feb 2026 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Ibm db2 Merge Backup
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:ibm:db2_merge_backup:12.1.0.0:*:*:*:*:linux:*:*
cpe:2.3:a:ibm:db2_merge_backup:12.1.0.0:*:*:*:*:unix:*:*
cpe:2.3:a:ibm:db2_merge_backup:12.1.0.0:*:*:*:*:windows:*:*
Vendors & Products Ibm db2 Merge Backup

Tue, 17 Feb 2026 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 17 Feb 2026 19:45:00 +0000

Type Values Removed Values Added
Description IBM DB2 Merge Backup for Linux, UNIX and Windows 12.1.0.0 could allow an attacker to access sensitive information in memory due to the buffer not properly clearing resources.
Title Fixes to common vulnerabilities found in IBM Db2 Merge Backup for Linux, UNIX and Windows
First Time appeared Ibm
Ibm db2 Merge Backup For Linux Unix And Windows
CPEs cpe:2.3:a:ibm:db2_merge_backup_for_linux_unix_and_windows:12.1.0.0:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm db2 Merge Backup For Linux Unix And Windows
References
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'}


Subscriptions

Ibm Db2 Merge Backup Db2 Merge Backup For Linux Unix And Windows
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-02-26T21:42:41.200Z

Reserved: 2025-11-12T22:27:04.622Z

Link: CVE-2025-13108

cve-icon Vulnrichment

Updated: 2026-02-17T19:52:13.094Z

cve-icon NVD

Status : Analyzed

Published: 2026-02-17T20:22:01.587

Modified: 2026-02-26T23:11:08.460

Link: CVE-2025-13108

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-02-18T10:33:35Z

Weaknesses