Unrated severityNVD Advisory· Published Aug 18, 2007· Updated Apr 23, 2026
CVE-2007-4423
CVE-2007-4423
Description
Stack-based buffer overflow in the AUTH_LIST_GROUPS_FOR_AUTHID function in IBM DB2 UDB 9.1 before Fixpak 3 allows attackers to cause a denial of service and possibly execute arbitrary code via a long argument.
Affected products
3cpe:2.3:a:ibm:db2_universal_database:8.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:db2_universal_database:8.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:db2_universal_database:9.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:db2_universal_database:9.1:*:fp2:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- secunia.com/advisories/26471nvdPatchVendor Advisory
- www-1.ibm.com/support/docview.wssnvdPatch
- www.vupen.com/english/advisories/2007/2912nvdVendor Advisory
- www-1.ibm.com/support/docview.wssnvd
- www.appsecinc.com/resources/alerts/db2/2007-01.shtmlnvd
- www.attrition.org/pipermail/vim/2007-August/001765.htmlnvd
- www.securityfocus.com/archive/1/478313/100/0/threadednvd
- www.securityfocus.com/bid/25339nvd
- www.securitytracker.com/idnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/36065nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/36111nvd
News mentions
0No linked articles in our index yet.