Security holes plague IBM DB2, HP OpenView - Security Bytes
» VIEW ALL POSTS Nov 15 2007   5:43AM GMT

Security holes plague IBM DB2, HP OpenView



Posted by: Bill Brenner
Information Security Threats, Security Management

Secunia has released advisories for security holes in IBM DB2 and HP OpenView. In both cases, the vendors have issues patches.

Secunia advisory SA27667 describes three vulnerabilities in IBM DB2, some of which have unknown impacts, and another that can be exploited by malicious, local users to gain escalated privileges or perform certain actions with escalated privileges. According to IBM’s advisory, the problems affect DB2 for Linux, Unix and Windows. The solution is to apply Fixpak 4.

Secunia advisory SA27635 describes a vulnerability and a security issue in HP OpenView Operations attackers could exploit to bypass certain security restrictions or to cause a denial of service. This affects HP OpenView Operations (OVO) 7.1X and 8.X running on HP-UX B.11.11, B.11.23, B.11.31, and Solaris. Users can go to this HP Web page for patching instructions.

Comment on this Post


You must be logged-in to post a comment. Log-in/Register

eraser’s blog » Blog Archive » Security holes plague IBM DB2, HP OpenView  |   Nov 15 2007   8:01AM GMT

[...] By Bill Brenner Secunia advisory SA27667 describes three vulnerabilities in IBM DB2, some of which have unknown impacts, and another that can be exploited by malicious, local users to gain escalated privileges or perform certain actions with escalated … <a href="http://security.blogs.techtarget.com" title="http://security.blogs.techtarget. " target="_blank">security.blogs.techtarget.com</a> Security Bytes <a href="http://security.blogs.techtarget.com" title="http://security.blogs.techtarget. " target="_blank">security.blogs.techtarget.com</a> [...]