Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2007-5246
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-5246

Description:
Multiple stack-based buffer overflows in Firebird LI 2.0.0.12748 and 2.0.1.12855, and WI 2.0.0.12748 and 2.0.1.12855, allow remote attackers to execute arbitrary code via (1) a long attach request on TCP port 3050 to the isc_attach_database function or (2) a long create request on TCP port 3050 to the isc_create_database function.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/36958

ST
  1018773

SAID
  Secunia Advisory: SA27057
  Secunia Advisory: SA27982

MISC
  http://www.risesecurity.org/advisory/RISE-2007003/
  http://risesecurity.org/exploit/17/
  http://risesecurity.org/exploit/16/
  http://risesecurity.org/blog/entry/3/
  http://risesecurity.org/advisory/RISE-2007003/

GENTOO
  http://security.gentoo.org/glsa/glsa-200712-06.xml

CONFIRM
  http://bugs.gentoo.org/show_bug.cgi?id=195569

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/481491/100/0/threaded

BID
  25917
  25925


Return to the previous page.