oss-sec mailing list archives
CVE request: buffer overflow in unixODBC's SQLDriverConnect()
From: Felipe Pena <felipensp () gmail com>
Date: Wed, 9 Mar 2011 14:18:10 -0300
Hi, Please assign CVE id for a possible buffer overflow in unixODBC's SQLDriverConnect() function by specifying a large value for SAVEFILE parameter in the connection string. A fix has been committed in the SVN addressing the issue: http://unixodbc.svn.sourceforge.net/viewvc/unixodbc/trunk/DriverManager/SQLDriverConnect.c?r1=23&r2=27 Thanks. -- Regards, Felipe Pena
Current thread:
- CVE request: buffer overflow in unixODBC's SQLDriverConnect() Felipe Pena (Mar 09)
- Re: CVE request: buffer overflow in unixODBC's SQLDriverConnect() Josh Bressers (Mar 10)