Buffer overflow in ibserver for Firebird Database 1.0 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows remote attackers to cause a denial of service (crash) via a long database name, as demonstrated using the gsec command.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Interbase | Borland_software | 4.0 (including) | 4.0 (including) |
Interbase | Borland_software | 5.0 (including) | 5.0 (including) |
Interbase | Borland_software | 6.0 (including) | 6.0 (including) |
Interbase | Borland_software | 6.4 (including) | 6.4 (including) |
Interbase | Borland_software | 6.5 (including) | 6.5 (including) |
Interbase | Borland_software | 7.0 (including) | 7.0 (including) |
Interbase | Borland_software | 7.1 (including) | 7.1 (including) |
Interbase_superserver | Borland_software | 6.0 (including) | 6.0 (including) |
Firebird | Firebirdsql | 1.0 (including) | 1.0 (including) |
Firebird1.5 | Ubuntu | gutsy | * |
Firebird2 | Ubuntu | dapper | * |
Firebird2 | Ubuntu | edgy | * |
Firebird2 | Ubuntu | feisty | * |
Firebird2.0 | Ubuntu | devel | * |
Firebird2.0 | Ubuntu | gutsy | * |