跳转到主内容

IBM DB2 在 OnCommand Insight (OCI) 7.3.16 中的漏洞

Views:
Visibility:
Public
Votes:
0
Category:
oncommand-insight
Specialty:
oci
Last Updated:

适用于

NetApp OnCommand Insight (OCI) 7.3.16
IBM DB2 11.5.9(与 OCI/DWH 捆绑)
所有支持的平台上运行的 OCI 7.3.16

问题描述

对于运行 OCI 7.3.16 的环境,已报告了多个 IBM DB2 漏洞(CAT I、STIG 发现)。

STIG 发现严重程度:CAT I
CVE-2025-36006 -  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-36006
CVE-2025-36131 -  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-36131
CVE-2025-36136 -  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-36136
CVE-2025-36185 -  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-36185
CVE-2025-36186 -  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-36186
CVE-2025-33012 -  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-33012

参考文献:

IBM Security Bulletin (7250469) - https://www.ibm.com/support/pages/node/7250469
IBM Security Bulletin (7250479) - https://www.ibm.com/support/pages/node/7250479
IBM Security Bulletin (7250484) - https://www.ibm.com/support/pages/node/7250484
IBM Security Bulletin (7250485) - https://www.ibm.com/support/pages/node/7250485
IBM Security Bulletin (7250486) - https://www.ibm.com/support/pages/node/7250486
IBM Security Bulletin (7250487) - https://www.ibm.com/support/pages/node/7250487

Sign in to view the entire content of this KB article.

New to NetApp?

Learn more about our award-winning Support

NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.