CVE Vulnerabilities

CVE-2008-0307

Published: Mar 11, 2008 | Modified: Aug 08, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Integer signedness error in vserver in SAP MaxDB 7.6.0.37, and possibly other versions, allows remote attackers to execute arbitrary code via unknown vectors that trigger heap corruption.

Affected Software

Name Vendor Start Version End Version
Maxdb Sap 7.6.0.37 (including) 7.6.0.37 (including)
Maxdb-7.5.00 Ubuntu dapper *
Maxdb-7.5.00 Ubuntu edgy *
Maxdb-7.5.00 Ubuntu feisty *
Maxdb-7.5.00 Ubuntu gutsy *
Maxdb-7.5.00 Ubuntu upstream *

References