CVE-2025-33012

IBM Db2 10.5.0 through 10.5.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.3 for Linux could allow an authenticated user to regain access after account lockout due to password use after expiration date.
References
Link Resource
https://www.ibm.com/support/pages/node/7250469 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:db2:*:*:*:*:*:linux:*:*
cpe:2.3:a:ibm:db2:*:*:*:*:*:linux:*:*
cpe:2.3:a:ibm:db2:*:*:*:*:*:linux:*:*
cpe:2.3:a:ibm:db2:*:*:*:*:*:linux:*:*

History

19 Nov 2025, 16:37

Type Values Removed Values Added
References () https://www.ibm.com/support/pages/node/7250469 - () https://www.ibm.com/support/pages/node/7250469 - Vendor Advisory
First Time Ibm db2
Ibm
CPE cpe:2.3:a:ibm:db2:*:*:*:*:*:linux:*:*

07 Nov 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-07 19:15

Updated : 2025-11-19 16:37


NVD link : CVE-2025-33012

Mitre link : CVE-2025-33012

CVE.ORG link : CVE-2025-33012


JSON object : View

Products Affected

ibm

  • db2
CWE
CWE-324

Use of a Key Past its Expiration Date