CVE-2022-22390

IBM Db2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, 11.1, and 11.5 may be vulnerable to an information disclosure caused by improper privilege management when table function is used. IBM X-Force ID: 221973.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:db2:9.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:10.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:10.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:11.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:11.5:*:*:*:*:*:*:*
OR cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:opengroup:unix:-:*:*:*:*:*:*:*

History

28 Oct 2022, 22:41

Type Values Removed Values Added
References (CONFIRM) https://security.netapp.com/advisory/ntap-20220729-0007/ - (CONFIRM) https://security.netapp.com/advisory/ntap-20220729-0007/ - Third Party Advisory

29 Jul 2022, 20:15

Type Values Removed Values Added
References
  • (CONFIRM) https://security.netapp.com/advisory/ntap-20220729-0007/ -

06 Jul 2022, 14:33

Type Values Removed Values Added
First Time Opengroup
Linux
Opengroup unix
Ibm
Ibm db2
Microsoft
Microsoft windows
Linux linux Kernel
References (CONFIRM) https://www.ibm.com/support/pages/node/6597993 - (CONFIRM) https://www.ibm.com/support/pages/node/6597993 - Vendor Advisory
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/221973 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/221973 - VDB Entry, Vendor Advisory
CPE cpe:2.3:a:ibm:db2:9.7:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:11.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:10.5:*:*:*:*:*:*:*
cpe:2.3:o:opengroup:unix:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:11.1:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:10.1:*:*:*:*:*:*:*
CWE CWE-269
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5

24 Jun 2022, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-06-24 17:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-22390

Mitre link : CVE-2022-22390

CVE.ORG link : CVE-2022-22390


JSON object : View

Products Affected

ibm

  • db2

linux

  • linux_kernel

opengroup

  • unix

microsoft

  • windows
CWE
CWE-269

Improper Privilege Management