- EPSS 1.85%
- Published 04.09.2007 22:17:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in the server in Firebird before 2.0.2 allows remote attackers to cause a denial of service (daemon crash) via an XNET session that makes multiple simultaneous requests to register events, aka CORE-1403.
CVE-2007-4664
- EPSS 1.07%
- Published 04.09.2007 22:17:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in the (1) attach database and (2) create database functionality in Firebird before 2.0.2, when a filename exceeds MAX_PATH_LEN, has unknown impact and attack vectors, aka CORE-1405.
CVE-2007-3527
- EPSS 1.26%
- Published 03.07.2007 18:30:00
- Last modified 09.04.2025 00:30:58
Integer overflow in Firebird 2.0.0 allows remote authenticated users to cause a denial of service (CPU consumption) via certain database operations with multi-byte character sets that trigger an attempt to use the value 65536 for a 16-bit integer, wh...
CVE-2006-7214
- EPSS 0.66%
- Published 29.06.2007 18:30:00
- Last modified 09.04.2025 00:30:58
Multiple unspecified vulnerabilities in Firebird 1.5 allow remote attackers to (1) cause a denial of service (application crash) by sending many remote protocol versions; and (2) cause a denial of service (connection drop) via certain network traffic...
CVE-2006-7213
- EPSS 0.17%
- Published 29.06.2007 18:30:00
- Last modified 09.04.2025 00:30:58
Firebird 1.5 allows remote authenticated users without SYSDBA and owner permissions to overwrite a database by creating a database.
CVE-2006-7212
- EPSS 0.4%
- Published 29.06.2007 18:30:00
- Last modified 09.04.2025 00:30:58
Multiple buffer overflows in Firebird 1.5, one of which affects WNET, have unknown impact and attack vectors. NOTE: this issue might overlap CVE-2006-1240.
CVE-2006-7211
- EPSS 0.04%
- Published 29.06.2007 18:30:00
- Last modified 09.04.2025 00:30:58
fb_lock_mgr in Firebird 1.5 uses weak permissions (0666) for the semaphore array, which allows local users to cause a denial of service (blocked query processing) by locking semaphores.
- EPSS 28.19%
- Published 12.06.2007 23:30:00
- Last modified 09.04.2025 00:30:58
Buffer overflow in fbserver.exe in Firebird SQL 2 before 2.0.1 allows remote attackers to execute arbitrary code via a large p_cnct_count value in a p_cnct structure in a connect (0x01) request to port 3050/tcp, related to "an InterBase version of gd...
CVE-2007-2606
- EPSS 0.81%
- Published 11.05.2007 10:19:00
- Last modified 09.04.2025 00:30:58
Multiple buffer overflows in Firebird 2.1 allow attackers to trigger memory corruption and possibly have other unspecified impact via certain input processed by (1) config\ConfigFile.cpp or (2) msgs\check_msgs.epp. NOTE: if ConfigFile.cpp reads a co...
CVE-2006-1241
- EPSS 0.05%
- Published 15.03.2006 17:06:00
- Last modified 03.04.2025 01:03:51
Firebird 1.5.2.4731 installs (1) fb_lock_mgr, (2) gds_drop, and (3) fb_inet_server with setuid firebird permissions, which might allow local users to gain privileges via a buffer overflow as identified by CVE-2006-1240, or possibly other vulnerabilit...