10

CVE-2009-2754

Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka portmap.exe), as used in IBM Informix Dynamic Server (IDS) 10.x before 10.00.TC9 and 11.x before 11.10.TC3 and EMC Legato NetWorker, allows remote attackers to execute arbitrary code via a crafted parameter size that triggers a stack-based buffer overflow.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IbmInformix Dynamic Server Version10.0
IbmInformix Dynamic Server Version10.0.tc1
IbmInformix Dynamic Server Version10.0.xc1
IbmInformix Dynamic Server Version10.0.xc2e
IbmInformix Dynamic Server Version10.0.xc3
IbmInformix Dynamic Server Version10.0.xc3e
IbmInformix Dynamic Server Version10.0.xc4
IbmInformix Dynamic Server Version10.0.xc4e
IbmInformix Dynamic Server Version10.0.xc5
IbmInformix Dynamic Server Version10.0.xc5e
IbmInformix Dynamic Server Version10.0.xc6
IbmInformix Dynamic Server Version10.0.xc6e
IbmInformix Dynamic Server Version10.0.xc7
IbmInformix Dynamic Server Version10.0.xc7e
IbmInformix Dynamic Server Version10.0.xc8
IbmInformix Dynamic Server Version10.0.xc8e
IbmInformix Dynamic Server Version10.0.xc9
IbmInformix Dynamic Server Version10.0.xc9e
IbmInformix Dynamic Server Version10.0.xc10
IbmInformix Dynamic Server Version10.0.xc10e
IbmInformix Dynamic Server Version11.1
IbmInformix Dynamic Server Version11.10
IbmInformix Dynamic Server Version11.10.xc1
IbmInformix Dynamic Server Version11.10.xc1de
IbmInformix Dynamic Server Version11.10.xc2
IbmInformix Dynamic Server Version11.10.xc2e
IbmInformix Dynamic Server Version11.10.xc3
IbmInformix Dynamic Server Version11.10.xc3e
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 30.96% 0.966
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C