oss-sec mailing list archives

Re: CVE request: denial of service flaw in firebird


From: cve-assign () mitre org
Date: Sat, 3 Jan 2015 18:59:18 -0500 (EST)


I've not seen a CVE for this; could one be assigned?  Thanks.

It was found that an unauthenticated remote attacker could send a malformed network packet to a firebird server, which would cause the server to crash.

http://www.firebirdsql.org/en/news/security-updates-for-v2-1-and-v2-5-series-66011/
http://tracker.firebirdsql.org/browse/CORE-4630
http://sourceforge.net/p/firebird/code/60331/
https://bugs.mageia.org/show_bug.cgi?id=14726
https://bugzilla.redhat.com/show_bug.cgi?id=1172445

Use CVE-2014-9492.

---

CVE assignment team, MITRE CVE Numbering Authority M/S M300
202 Burlington Road, Bedford, MA 01730 USA
[ PGP key available through http://cve.mitre.org/cve/request_id.html ]


Current thread: