Heap-based buffer overflow in Borland idsql32.dll 5.1.0.4, as used by RevilloC MailServer; 5.2.0.2 as used by Borland Developer Studio 2006; and possibly other versions allows remote attackers to execute arbitrary code via a long SQL statement, related to use of the DbiQExec function.
Name | Vendor | Start Version | End Version |
---|---|---|---|
C++_builder | Borland_software | 5.x (including) | 5.x (including) |
C++_builder | Borland_software | 6.x (including) | 6.x (including) |
C++_builder | Borland_software | 2006 (including) | 2006 (including) |
C_builder | Borland_software | 2006 (including) | 2006 (including) |
Delphi | Borland_software | 5.x (including) | 5.x (including) |
Delphi | Borland_software | 6.x (including) | 6.x (including) |
Delphi | Borland_software | 7.x (including) | 7.x (including) |
Delphi | Borland_software | 2006 (including) | 2006 (including) |
Developer_studio | Borland_software | 2006 (including) | 2006 (including) |
Idsql32.dll | Borland_software | 5.1.0.2 (including) | 5.1.0.2 (including) |
Idsql32.dll | Borland_software | 5.1.0.4 (including) | 5.1.0.4 (including) |
Mailserver | Revilloc | * | * |