![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2010-3731 |
Description: | Stack-based buffer overflow in the validateUser implementation in the com.ibm.db2.das.core.DasSysCmd function in db2dasrrm in the DB2 Administration Server (DAS) component in IBM DB2 9.1 before FP10, 9.5 before FP6a, and 9.7 before FP3 allows remote attackers to execute arbitrary code via a long username string. |
Test IDs: | None available |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2010-3731 AIX APAR: IC69986 http://www-01.ibm.com/support/docview.wss?uid=swg1IC69986 AIX APAR: IC70538 http://www-01.ibm.com/support/docview.wss?uid=swg1IC70538 AIX APAR: IC70539 http://www-01.ibm.com/support/docview.wss?uid=swg1IC70539 BugTraq ID: 46077 http://www.securityfocus.com/bid/46077 http://www.zerodayinitiative.com/advisories/ZDI-11-035 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14687 http://secunia.com/advisories/41686 http://www.vupen.com/english/advisories/2010/2544 |