solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing a single integer field, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a TCP session on port 1315.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Soliddb | Ibm | * | 6.5.0.3 (including) |
Soliddb | Ibm | 4.5.167 (including) | 4.5.167 (including) |
Soliddb | Ibm | 4.5.168 (including) | 4.5.168 (including) |
Soliddb | Ibm | 4.5.169 (including) | 4.5.169 (including) |
Soliddb | Ibm | 4.5.173 (including) | 4.5.173 (including) |
Soliddb | Ibm | 4.5.175 (including) | 4.5.175 (including) |
Soliddb | Ibm | 4.5.176 (including) | 4.5.176 (including) |
Soliddb | Ibm | 4.5.178 (including) | 4.5.178 (including) |
Soliddb | Ibm | 6.0.1060 (including) | 6.0.1060 (including) |
Soliddb | Ibm | 6.0.1061 (including) | 6.0.1061 (including) |
Soliddb | Ibm | 6.0.1064 (including) | 6.0.1064 (including) |
Soliddb | Ibm | 6.0.1065 (including) | 6.0.1065 (including) |
Soliddb | Ibm | 6.0.1066 (including) | 6.0.1066 (including) |
Soliddb | Ibm | 6.1 (including) | 6.1 (including) |
Soliddb | Ibm | 6.1.20 (including) | 6.1.20 (including) |
Soliddb | Ibm | 6.3.33 (including) | 6.3.33 (including) |
Soliddb | Ibm | 6.3.37 (including) | 6.3.37 (including) |
Soliddb | Ibm | 6.5.0.0 (including) | 6.5.0.0 (including) |
Soliddb | Ibm | 6.5.0.1 (including) | 6.5.0.1 (including) |
Soliddb | Ibm | 6.5.0.2 (including) | 6.5.0.2 (including) |
Soliddb | Ibm | 6.30.0039 (including) | 6.30.0039 (including) |
Soliddb | Ibm | 6.30.0040 (including) | 6.30.0040 (including) |
Soliddb | Ibm | 6.30.0044 (including) | 6.30.0044 (including) |
Soliddb | Ibm | 06.30.0047 (including) | 06.30.0047 (including) |