CVE-2012-3324
Publication date 25 September 2012
Last updated 24 July 2024
Ubuntu priority
Description
Directory traversal vulnerability in the UTL_FILE module in IBM DB2 and DB2 Connect 10.1 before FP1 on Windows allows remote authenticated users to modify, delete, or read arbitrary files via a pathname in the file field.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| db2 | ||
| db2exc | ||
| db2exc-amd64 | ||