mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-12-30 07:57:55 +00:00
339 lines
12 KiB
JSON
339 lines
12 KiB
JSON
{
|
|
"id": "CVE-2014-3095",
|
|
"sourceIdentifier": "psirt@us.ibm.com",
|
|
"published": "2014-09-04T10:55:06.910",
|
|
"lastModified": "2017-08-29T01:34:39.247",
|
|
"vulnStatus": "Modified",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "The SQL engine in IBM DB2 9.5 through FP10, 9.7 through FP9a, 9.8 through FP5, 10.1 through FP4, and 10.5 before FP4 on Linux, UNIX, and Windows allows remote authenticated users to cause a denial of service (daemon crash) via a crafted UNION clause in a subquery of a SELECT statement."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "El motor SQL en IBM DB2 9.5 hasta FP10, 9.7 hasta FP9a, 9.8 hasta FP5, 10.1 hasta FP4, y 10.5 anterior a FP4 en Linux, UNIX y Windows permite a usuarios remotos autenticados causar una denegaci\u00f3n de servicio (ca\u00edda del demonio) a trav\u00e9s de una clausula UNION manipulada en una subconsulta de una declaraci\u00f3n SELECT."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:M/Au:S/C:N/I:N/A:P",
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "MEDIUM",
|
|
"authentication": "SINGLE",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "NONE",
|
|
"availabilityImpact": "PARTIAL",
|
|
"baseScore": 3.5
|
|
},
|
|
"baseSeverity": "LOW",
|
|
"exploitabilityScore": 6.8,
|
|
"impactScore": 2.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-20"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"operator": "AND",
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "11ABF7CC-2FA5-4F2D-901A-2D0EF5B8E717"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "95D26FF3-1D40-49D6-A5BB-284FE1B89288"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C7A2E9C9-8EB4-4127-8278-E976D4D3B7C2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.2:a:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DC1ED577-3F11-415F-90C8-62B9EC21CA08"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9E054B24-704E-4C05-8E58-3FE0A04D84EC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.3:a:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4C72E084-0266-4389-B8BB-202292D47DB4"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.3:b:*:*:*:*:*:*",
|
|
"matchCriteriaId": "008B98FD-1DE2-4323-B20E-7BD422EB6771"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E12C4D6E-7AF9-44F9-9389-F9CA7409C41F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.4:a:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8A1C889C-885B-4DB3-A5F4-89A0B1DE0F47"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C13BB7FD-718B-499E-87C7-637D2A2E3D5E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.6:a:*:*:*:*:*:*",
|
|
"matchCriteriaId": "267FE109-013A-482E-8078-161FA0991973"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C2F30C1B-0799-49A2-BAA5-26A6030B7682"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8C4E4D16-3C35-42BD-A131-AF0DFC2D20AB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.9:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9B7D92A9-BC9A-4F56-AEA6-CE06C7688070"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.5.0.10:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E3356137-34FF-4B43-861B-E3DBA6594E72"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CE1C4DE6-EB32-4A31-9FAA-D8DA31D8CF05"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A8A8E221-7045-4BAD-9B29-ABBC5216559D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "56C39DC1-AD23-4F26-9727-EC0FBDF84BEE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2513D42C-E558-4CC7-88D3-BB44F1B40157"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7.0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6F441BE8-AEC0-44F0-875E-03C65A45CF68"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7.0.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "036E9715-CFAA-4F2A-B432-181EDCA3D812"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7.0.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9A55FBA0-4DFC-493D-91EF-EB56C241F9CE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7.0.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B539123F-B8AC-4051-9458-A780C68E9667"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7.0.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D3958E50-1F97-4C06-AF22-C635FB2557A0"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7.0.9:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "57AC4D14-805A-42F6-9348-D13C9A48136F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.7.0.9:a:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2B1F07F2-3F58-4999-97E9-50C627D9CB84"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D72D43DB-9A92-4E12-853B-F5FC9421D5EA"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.8.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "734E79E6-4A83-4CBF-B8B3-2D6D4491728E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.8.0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3631F758-5C8F-4D24-81C1-D6146B0209CB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:9.8.0.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3CB6E617-98EA-4944-9211-FFEE9E50FE55"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2952EB24-A015-4EC7-85E3-88588D0AB15B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.1.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E5FA4086-9B5D-4352-B717-3F826DE17D4B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.1.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "AD79FF24-6C10-437B-86AF-E211B8C6FDC5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.1.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7ABB145C-44EE-47F5-9439-DE6433F8008E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.1.0.3:a:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5815103C-D6DC-49D2-A544-1E3A2AEEEB3D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.1.0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0F138E08-6808-4371-9E9C-096B01126B1C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6E232F83-BE4C-4B3E-A5B1-53F9D95F0368"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.5.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4B27E1F7-888C-40EE-85FF-B5DC099828C3"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.5.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "57DCF076-B475-41E6-B1ED-44FBC99238C2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.5.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "BDB1972D-F7FC-4ABA-9DEE-9953D2572944"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:ibm:db2:10.5.0.3:a:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CA651B7E-418B-4C3C-9A83-7E25342D884F"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "155AD4FB-E527-4103-BCEF-801B653DEA37"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2CF61F35-5905-4BA9-AD7E-7DB261D2F256"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://secunia.com/advisories/58725",
|
|
"source": "psirt@us.ibm.com"
|
|
},
|
|
{
|
|
"url": "http://www-01.ibm.com/support/docview.wss?uid=swg1IT02433",
|
|
"source": "psirt@us.ibm.com",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www-01.ibm.com/support/docview.wss?uid=swg1IT02643",
|
|
"source": "psirt@us.ibm.com"
|
|
},
|
|
{
|
|
"url": "http://www-01.ibm.com/support/docview.wss?uid=swg1IT02644",
|
|
"source": "psirt@us.ibm.com"
|
|
},
|
|
{
|
|
"url": "http://www-01.ibm.com/support/docview.wss?uid=swg1IT02645",
|
|
"source": "psirt@us.ibm.com"
|
|
},
|
|
{
|
|
"url": "http://www-01.ibm.com/support/docview.wss?uid=swg1IT02646",
|
|
"source": "psirt@us.ibm.com"
|
|
},
|
|
{
|
|
"url": "http://www-01.ibm.com/support/docview.wss?uid=swg21681623",
|
|
"source": "psirt@us.ibm.com",
|
|
"tags": [
|
|
"Patch",
|
|
"Vendor Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www-01.ibm.com/support/docview.wss?uid=swg21683297",
|
|
"source": "psirt@us.ibm.com"
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/69546",
|
|
"source": "psirt@us.ibm.com"
|
|
},
|
|
{
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/94263",
|
|
"source": "psirt@us.ibm.com"
|
|
}
|
|
]
|
|
} |