Heap-based buffer overflow in Borland idsql32.dll 5.1.0.4, as used by RevilloC MailServer; 5.2.0.2 as used by Borland Developer Studio 2006; and possibly other versions allows remote attackers to execute arbitrary code via a long SQL statement, related to use of the DbiQExec function.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| C++_builder | Borland_software | 5.x (including) | 5.x (including) |
| C++_builder | Borland_software | 6.x (including) | 6.x (including) |
| C++_builder | Borland_software | 2006 (including) | 2006 (including) |
| C_builder | Borland_software | 2006 (including) | 2006 (including) |
| Delphi | Borland_software | 5.x (including) | 5.x (including) |
| Delphi | Borland_software | 6.x (including) | 6.x (including) |
| Delphi | Borland_software | 7.x (including) | 7.x (including) |
| Delphi | Borland_software | 2006 (including) | 2006 (including) |
| Developer_studio | Borland_software | 2006 (including) | 2006 (including) |
| Idsql32.dll | Borland_software | 5.1.0.2 (including) | 5.1.0.2 (including) |
| Idsql32.dll | Borland_software | 5.1.0.4 (including) | 5.1.0.4 (including) |
| Mailserver | Revilloc | * | * |