>> Firebird 1 "Connect" and "Attach" Requests Buffer Overflow Vulnerabilities
Title : Firebird 1 "Connect" and "Attach" Requests Buffer Overflow Vulnerabilities VUPEN ID : VUPEN/ADV-2007-3380 CVE ID : CVE-2007-5246
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-10-05
Technical Description
Multiple vulnerabilities have been identified in Firebird 1, which could be exploited by attackers to cause a denial of service or take complete control of an affected system. These issues are caused by buffer overflow errors in the "INET_connect()" and "SVC_attach()" functions when processing malformed data, which could be exploited by attackers to crash an affected database or execute arbitrary code via a specially crafted request.