### [CVE-2017-1297](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-1297) ![](https://img.shields.io/static/v1?label=Product&message=DB2%20for%20Linux%2C%20UNIX%20and%20Windows&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Gain%20Privileges&color=brighgreen) ### Description IBM DB2 for Linux, UNIX and Windows 9.2, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) is vulnerable to a stack-based buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code. IBM X-Force ID: 125159. ### POC #### Reference - https://www.exploit-db.com/exploits/42260/ #### Github No PoCs found on GitHub currently.