CVE-2009-4335

IBM DB2 9.5 - Remote Code Execution in Spatial Extender Stored Procedures

Title source: llm
STIX 2.1

Description

Multiple unspecified vulnerabilities in bundled stored procedures in the Spatial Extender component in IBM DB2 9.5 before FP5 have unknown impact and remote attack vectors, related to "remote exploits."

References (8)

Core 8
Core References
Various Sources vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg1IC62625
Patch, Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21293566
Patch, Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/3520
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/37332
Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21412902
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/55007
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/37759

Scores

EPSS 0.0234
EPSS Percentile 81.8%

Details

Status published
Products (1)
ibm/db2 9.5 (9 CPE variants)
Published Dec 16, 2009
Tracked Since Feb 18, 2026