CVE Vulnerabilities

CVE-2010-4057

Published: Oct 23, 2010 | Modified: Aug 17, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing many integer fields with two different values, which allows remote attackers to cause a denial of service (invalid memory access and daemon crash) via a TCP session on port 1315.

Affected Software

Name Vendor Start Version End Version
Soliddb Ibm * 6.5.0.3 (including)
Soliddb Ibm 4.5.167 (including) 4.5.167 (including)
Soliddb Ibm 4.5.168 (including) 4.5.168 (including)
Soliddb Ibm 4.5.169 (including) 4.5.169 (including)
Soliddb Ibm 4.5.173 (including) 4.5.173 (including)
Soliddb Ibm 4.5.175 (including) 4.5.175 (including)
Soliddb Ibm 4.5.176 (including) 4.5.176 (including)
Soliddb Ibm 4.5.178 (including) 4.5.178 (including)
Soliddb Ibm 6.0.1060 (including) 6.0.1060 (including)
Soliddb Ibm 6.0.1061 (including) 6.0.1061 (including)
Soliddb Ibm 6.0.1064 (including) 6.0.1064 (including)
Soliddb Ibm 6.0.1065 (including) 6.0.1065 (including)
Soliddb Ibm 6.0.1066 (including) 6.0.1066 (including)
Soliddb Ibm 6.1 (including) 6.1 (including)
Soliddb Ibm 6.1.20 (including) 6.1.20 (including)
Soliddb Ibm 6.3.33 (including) 6.3.33 (including)
Soliddb Ibm 6.3.37 (including) 6.3.37 (including)
Soliddb Ibm 6.5.0.0 (including) 6.5.0.0 (including)
Soliddb Ibm 6.5.0.1 (including) 6.5.0.1 (including)
Soliddb Ibm 6.5.0.2 (including) 6.5.0.2 (including)
Soliddb Ibm 6.30.0039 (including) 6.30.0039 (including)
Soliddb Ibm 6.30.0040 (including) 6.30.0040 (including)
Soliddb Ibm 6.30.0044 (including) 6.30.0044 (including)
Soliddb Ibm 06.30.0047 (including) 06.30.0047 (including)

References