Firebirdsql

Firebird

38 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.85%
  • Published 04.09.2007 22:17:00
  • Last modified 09.04.2025 00:30:58

Unspecified vulnerability in the server in Firebird before 2.0.2 allows remote attackers to cause a denial of service (daemon crash) via an XNET session that makes multiple simultaneous requests to register events, aka CORE-1403.

  • EPSS 1.07%
  • Published 04.09.2007 22:17:00
  • Last modified 09.04.2025 00:30:58

Unspecified vulnerability in the (1) attach database and (2) create database functionality in Firebird before 2.0.2, when a filename exceeds MAX_PATH_LEN, has unknown impact and attack vectors, aka CORE-1405.

  • EPSS 1.26%
  • Published 03.07.2007 18:30:00
  • Last modified 09.04.2025 00:30:58

Integer overflow in Firebird 2.0.0 allows remote authenticated users to cause a denial of service (CPU consumption) via certain database operations with multi-byte character sets that trigger an attempt to use the value 65536 for a 16-bit integer, wh...

  • EPSS 0.66%
  • Published 29.06.2007 18:30:00
  • Last modified 09.04.2025 00:30:58

Multiple unspecified vulnerabilities in Firebird 1.5 allow remote attackers to (1) cause a denial of service (application crash) by sending many remote protocol versions; and (2) cause a denial of service (connection drop) via certain network traffic...

  • EPSS 0.17%
  • Published 29.06.2007 18:30:00
  • Last modified 09.04.2025 00:30:58

Firebird 1.5 allows remote authenticated users without SYSDBA and owner permissions to overwrite a database by creating a database.

  • EPSS 0.4%
  • Published 29.06.2007 18:30:00
  • Last modified 09.04.2025 00:30:58

Multiple buffer overflows in Firebird 1.5, one of which affects WNET, have unknown impact and attack vectors. NOTE: this issue might overlap CVE-2006-1240.

  • EPSS 0.04%
  • Published 29.06.2007 18:30:00
  • Last modified 09.04.2025 00:30:58

fb_lock_mgr in Firebird 1.5 uses weak permissions (0666) for the semaphore array, which allows local users to cause a denial of service (blocked query processing) by locking semaphores.

Exploit
  • EPSS 28.19%
  • Published 12.06.2007 23:30:00
  • Last modified 09.04.2025 00:30:58

Buffer overflow in fbserver.exe in Firebird SQL 2 before 2.0.1 allows remote attackers to execute arbitrary code via a large p_cnct_count value in a p_cnct structure in a connect (0x01) request to port 3050/tcp, related to "an InterBase version of gd...

  • EPSS 0.81%
  • Published 11.05.2007 10:19:00
  • Last modified 09.04.2025 00:30:58

Multiple buffer overflows in Firebird 2.1 allow attackers to trigger memory corruption and possibly have other unspecified impact via certain input processed by (1) config\ConfigFile.cpp or (2) msgs\check_msgs.epp. NOTE: if ConfigFile.cpp reads a co...

Exploit
  • EPSS 0.05%
  • Published 15.03.2006 17:06:00
  • Last modified 03.04.2025 01:03:51

Firebird 1.5.2.4731 installs (1) fb_lock_mgr, (2) gds_drop, and (3) fb_inet_server with setuid firebird permissions, which might allow local users to gain privileges via a buffer overflow as identified by CVE-2006-1240, or possibly other vulnerabilit...