CVE Vulnerabilities

CVE-2008-0307

Published: Mar 11, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer signedness error in vserver in SAP MaxDB 7.6.0.37, and possibly other versions, allows remote attackers to execute arbitrary code via unknown vectors that trigger heap corruption.

Affected Software

NameVendorStart VersionEnd Version
MaxdbSap7.6.0.37 (including)7.6.0.37 (including)
Maxdb-7.5.00Ubuntudapper*
Maxdb-7.5.00Ubuntuedgy*
Maxdb-7.5.00Ubuntufeisty*
Maxdb-7.5.00Ubuntugutsy*
Maxdb-7.5.00Ubuntuupstream*

References