CVE-2021-20515

IBM Informix Dynamic Server 14.10 is vulnerable to a stack based buffer overflow, caused by improper bounds checking. A local privileged user could overflow a buffer and execute arbitrary code on the system or cause a denial of service condition. IBM X-Force ID: 198366.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:ibm:informix_dynamic_server:14.10:*:*:*:*:*:*:*
OR cpe:2.3:o:hp:hp-ux:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:oracle:solaris:-:*:*:*:*:*:-:*

History

30 Apr 2021, 23:41

Type Values Removed Values Added
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/198366 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/198366 - VDB Entry, Vendor Advisory
References (CONFIRM) https://www.ibm.com/support/pages/node/6448568 - (CONFIRM) https://www.ibm.com/support/pages/node/6448568 - Patch, Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 4.6
v3 : 6.7
CPE cpe:2.3:a:ibm:informix_dynamic_server:14.10:*:*:*:*:*:*:*
cpe:2.3:o:hp:hp-ux:-:*:*:*:*:*:*:*
cpe:2.3:o:oracle:solaris:-:*:*:*:*:*:-:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
CWE CWE-787

30 Apr 2021, 16:21

Type Values Removed Values Added
New CVE

Information

Published : 2021-04-30 16:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-20515

Mitre link : CVE-2021-20515

CVE.ORG link : CVE-2021-20515


JSON object : View

Products Affected

hp

  • hp-ux

linux

  • linux_kernel

ibm

  • informix_dynamic_server
  • aix

oracle

  • solaris

microsoft

  • windows
CWE
CWE-787

Out-of-bounds Write