Rewterz
Rewterz Threat Alert – STOP aka DJVU Ransomware – Active IOCs
January 8, 2024
Rewterz
Rewterz Threat Update – New North Korean-Linked MacOS Backdoor ‘SpectralBlur’ Emerges
January 8, 2024

Rewterz Threat Advisory – CVE-2023-47145 – IBM Db2 Vulnerability

Severity

High

Analysis Summary

CVE-2023-47145

IBM Db2 for Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 could allow a local user to escalate their privileges to the SYSTEM user using the MSI repair functionality.

Impact

  • Privilege Escalation

Indicators Of Compromise

CVE

  • CVE-2023-47145

Affected Vendors

IBM

Affected Products

  • IBM DB2 for Linux
  • UNIX and Windows 10.5

Remediation

Refer to IBM Security Advisory for patch, upgrade or suggested workaround information.

IBM Security Advisory