CNNVD-202601-5037 Information

CNNVD ID

CNNVD-202601-5037

CVE-2025-36184

  • CNNVD Published: 2026-01-30

Description (Chinese)

IBM Db2是美国国际商业机器(IBM)公司的一套关系型数据库管理系统。该系统的执行环境主要有UNIX、Linux、IBMi、z/OS以及Windows服务器版本。 IBM Db2 11.5.0版本至11.5.9版本存在安全漏洞,该漏洞源于实例所有者可执行恶意代码,可能导致权限提升至root。

Description (English)

IBM Db2 is a relationship database management system for the United States International Business Machinery (IBM). The implementation environment for the system is mainly UNIX, Linux, IBMi, z/OS and Windows server versions. IBM Db2 11.5.0 to 11.5.9 has a security loophole, which stems from the fact that the owner of the example can enforce the malicious code, which may lead to the extension of the permission to root.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

国际商业机器

Published

2026-01-30

Last Modified

2026-02-24

References

https://www.ibm.com/support/pages/node/7257519 https://access.redhat.com/security/cve/cve-2025-36184

Patch

https://www.ibm.com/support/pages/node/7257519

Share on: