No analysis available yet.
Vendor Solution
The issue has been fixed in IBM Informix versions 14.10.xC13W13 and 15.0.1.14. * Fixes are available on IBM Fix Central - Select Fixes - Informix Server https://www.ibm.com/support/fixcentral/swg/selectFixes . * Follow the instructions for Database server upgrades https://www.ibm.com/docs/en/informix-servers/14.10 in the Informix Servers documentation.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7282829 |
|
Wed, 12 Aug 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Informix Dynamic Server 14.10, and 15.0 contain a local privilege escalation vulnerability in the oninit setuid-root utility. | |
| Title | IBM Informix Dynamic Server Privilege Escalation Vulnerability in oninit Utility | |
| First Time appeared |
Ibm
Ibm informix Dynamic Server |
|
| Weaknesses | CWE-284 | |
| CPEs | cpe:2.3:a:ibm:informix_dynamic_server:14.10.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:informix_dynamic_server:14.10:*:*:*:*:*:*:* cpe:2.3:a:ibm:informix_dynamic_server:15.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:informix_dynamic_server:15.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm informix Dynamic Server |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-08-12T20:53:03.379Z
Reserved: 2026-06-25T18:56:30.705Z
Link: CVE-2026-13367
No data.
Status : Received
Published: 2026-08-12T21:17:35.260
Modified: 2026-08-12T21:17:35.260
Link: CVE-2026-13367
No data.
OpenCVE Enrichment
Updated: 2026-08-12T22:30:09Z
-
CWE-284
Improper Access Control