CVE-2007-5246
Last modified
CVE-2007-5246 is a vulnerability of currently unknown severity. Multiple stack-based buffer overflows in Firebird LI 2.0.0.12748 and 2.0.1.12855, and WI 2.0.0.12748 and 2.0.1.12855, allow remote attackers to execute arbitrary code via (1) a long attach request on TCP port 3050 to the isc_attach_database function or (2) a long create request on TCP port 3050 to the isc_create_database function.. EPSS estimates a 6.64% chance of exploitation in the next 30 days.
Description
Multiple stack-based buffer overflows in Firebird LI 2.0.0.12748 and 2.0.1.12855, and WI 2.0.0.12748 and 2.0.1.12855, allow remote attackers to execute arbitrary code via (1) a long attach request on TCP port 3050 to the isc_attach_database function or (2) a long create request on TCP port 3050 to the isc_create_database function.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Firebirdsql | Firebird | 2.0.0.12748 |
| Firebirdsql | Firebird | 2.0.1.12855 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-5246?
How severe is CVE-2007-5246?
How do I fix CVE-2007-5246?
Are you affected by CVE-2007-5246?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
