What is CVE-2026-10535?
CVE-2026-10535 is a buffer overflow vulnerability in the `setgid` helper `db2flacc` affecting IBM Db2 versions 11.5.0 through 11.5.9 and 12.1.0 through 12.1.4. Exploitation could allow an attacker to gain elevated privileges, so immediate patching is recommended on impacted systems.
Azərbaycanca: CVE-2026-10535, IBM Db2 verilənlər bazasının 11.5.0-11.5.9 və 12.1.0-12.1.4 versiyalarında `setgid` köməkçi `db2flacc` faylında bufer daşması (buffer overflow) zəifliyidir. Bu zəiflik vasitəsilə hücumçu potensial olaraq yüksək imtiyazlar əldə edə bilər, ona görə təsirlənən sistemlərdə təcili yamaqlar tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-119; shared vendor: IBM
FAQ2
Which versions of IBM Db2 are affected by CVE-2026-10535?
This vulnerability affects IBM Db2 versions 11.5.0 through 11.5.9 and 12.1.0 through 12.1.4.
What can exploitation of CVE-2026-10535 lead to?
Due to a buffer overflow in the `setgid` helper `db2flacc`, exploitation could potentially allow an attacker to gain elevated privileges.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.