“A vulnerability has been identified in IBM DB2 for Linux, which could be exploited by local attackers to bypass security restrictions. This issue is due to errors in various setuid binaries that handle temporary files in an insecure manner, which could allow malicious users to conduct symlink attacks and create or overwrite arbitrary files with the privileges of the user invoking the vulnerable application.”
Users are encouraged to update to DB2 v.9 SP2
More Information Available from:
FrSIRT/ADV-2007-0652
IBM Website IY94817
Today EMC introduced the “EMC CLARiiON CX3-10 UltraScale” networked storage system, a new entry point into its market-leading series of full 4Gb/s storage arrays; The new EMC RecoverPoint/SE software, an entry point for network-based asynchronous replication in mid-tier storage environments; and three solutions to help midsize businesses consolidate, back up, archive and protect their Microsoft SQL Server 2005, Microsoft Exchange 2003 and Oracle RAC 10g environments.
[ Read more ]
Microsoft released Service Pack 2 for SQL Server 2005. New features include analysis business intelligence for Microsoft Office 2007, limited data mining viewers with local mining models and general performance-related improvements.
[ More Information ]
[ Download Online ]
22 queries. 0.455 seconds