IBM Product Security Update Advisory (CVE-2025-36186)
Overview
We have released a security update to fix vulnerabilities in IBM products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-36186
IBM Db2 Versions: 12.1.0 and earlier and 12.1.3 and earlier
Resolved Vulnerabilities
Privilege Escalation Vulnerability in IBM Db2 (CVE-2025-36186)
Vulnerability Patches
Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-36186
IBM Db2 Version: Special Build #70120 [2]
References
[1] Security Bulletin: IBM® Db2® is vulnerable to privilege escalation under specific configurations (CVE-2025-36186)
https://www.ibm.com/support/pages/node/7250486
[2] Db2 v12.1.2 Published Cumulative Special Build Downloads
https://www.ibm.com/support/pages/db2-v1212-published-cumulative-special-build-downloads