oss-sec mailing list archives

CVE request: denial of service flaw in firebird


From: "Vincent Danen" <vdanen () redhat com>
Date: Tue, 09 Dec 2014 21:54:57 -0700

I've not seen a CVE for this; could one be assigned?  Thanks.

It was found that an unauthenticated remote attacker could send a malformed network packet to a firebird server, which would cause the server to crash.

http://www.firebirdsql.org/en/news/security-updates-for-v2-1-and-v2-5-series-66011/
http://tracker.firebirdsql.org/browse/CORE-4630
http://sourceforge.net/p/firebird/code/60331/
https://bugs.mageia.org/show_bug.cgi?id=14726
https://bugzilla.redhat.com/show_bug.cgi?id=1172445


--
Vincent Danen / Red Hat Product Security


Current thread: