CVE Vulnerabilities

CVE-2010-4056

Published: Oct 23, 2010 | Modified: Aug 17, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing a single integer field, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a TCP session on port 1315.

Affected Software

Name Vendor Start Version End Version
Soliddb Ibm * 6.5.0.3 (including)
Soliddb Ibm 4.5.167 (including) 4.5.167 (including)
Soliddb Ibm 4.5.168 (including) 4.5.168 (including)
Soliddb Ibm 4.5.169 (including) 4.5.169 (including)
Soliddb Ibm 4.5.173 (including) 4.5.173 (including)
Soliddb Ibm 4.5.175 (including) 4.5.175 (including)
Soliddb Ibm 4.5.176 (including) 4.5.176 (including)
Soliddb Ibm 4.5.178 (including) 4.5.178 (including)
Soliddb Ibm 6.0.1060 (including) 6.0.1060 (including)
Soliddb Ibm 6.0.1061 (including) 6.0.1061 (including)
Soliddb Ibm 6.0.1064 (including) 6.0.1064 (including)
Soliddb Ibm 6.0.1065 (including) 6.0.1065 (including)
Soliddb Ibm 6.0.1066 (including) 6.0.1066 (including)
Soliddb Ibm 6.1 (including) 6.1 (including)
Soliddb Ibm 6.1.20 (including) 6.1.20 (including)
Soliddb Ibm 6.3.33 (including) 6.3.33 (including)
Soliddb Ibm 6.3.37 (including) 6.3.37 (including)
Soliddb Ibm 6.5.0.0 (including) 6.5.0.0 (including)
Soliddb Ibm 6.5.0.1 (including) 6.5.0.1 (including)
Soliddb Ibm 6.5.0.2 (including) 6.5.0.2 (including)
Soliddb Ibm 6.30.0039 (including) 6.30.0039 (including)
Soliddb Ibm 6.30.0040 (including) 6.30.0040 (including)
Soliddb Ibm 6.30.0044 (including) 6.30.0044 (including)
Soliddb Ibm 06.30.0047 (including) 06.30.0047 (including)

References