CVE-2008-0387

Integer overflow in Firebird SQL 1.0.3 and earlier, 1.5.x before 1.5.6, 2.0.x before 2.0.4, and 2.1.x before 2.1.0 RC1 might allow remote attackers to execute arbitrary code via crafted (1) op_receive, (2) op_start, (3) op_start_and_receive, (4) op_send, (5) op_start_and_send, and (6) op_start_send_and_receive XDR requests, which triggers memory corruption.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:firebirdsql:firebird:*:*:*:*:*:*:*:*
cpe:2.3:a:firebirdsql:firebird:*:*:*:*:*:*:*:*
cpe:2.3:a:firebirdsql:firebird:*:*:*:*:*:*:*:*
cpe:2.3:a:firebirdsql:firebird:2.1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-01-29 02:00

Updated : 2023-12-10 10:40


NVD link : CVE-2008-0387

Mitre link : CVE-2008-0387

CVE.ORG link : CVE-2008-0387


JSON object : View

Products Affected

firebirdsql

  • firebird
CWE
CWE-189

Numeric Errors