Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown

CVE-2009-2620

Disclosure Date: July 29, 2009 (last updated October 04, 2023)
src/remote/server.cpp in fbserver.exe in Firebird SQL 1.5 before 1.5.6, 2.0 before 2.0.6, 2.1 before 2.1.3, and 2.5 before 2.5 Beta 2 allows remote attackers to cause a denial of service (daemon crash) via a malformed op_connect_request message that triggers an infinite loop or NULL pointer dereference.
0
Attacker Value
Unknown

CVE-2007-5245

Disclosure Date: October 06, 2007 (last updated October 04, 2023)
Multiple stack-based buffer overflows in Firebird LI 1.5.3.4870 and 1.5.4.4910, and WI 1.5.3.4870 and 1.5.4.4910, allow remote attackers to execute arbitrary code via (1) a long service attach request on TCP port 3050 to the SVC_attach function or (2) unspecified vectors involving the INET_connect function.
0
Attacker Value
Unknown

CVE-2006-7211

Disclosure Date: June 29, 2007 (last updated October 04, 2023)
fb_lock_mgr in Firebird 1.5 uses weak permissions (0666) for the semaphore array, which allows local users to cause a denial of service (blocked query processing) by locking semaphores.
0
Attacker Value
Unknown

CVE-2006-7214

Disclosure Date: June 29, 2007 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Firebird 1.5 allow remote attackers to (1) cause a denial of service (application crash) by sending many remote protocol versions; and (2) cause a denial of service (connection drop) via certain network traffic, as demonstrated by Nessus vulnerability scanning.
0
Attacker Value
Unknown

CVE-2006-7213

Disclosure Date: June 29, 2007 (last updated October 04, 2023)
Firebird 1.5 allows remote authenticated users without SYSDBA and owner permissions to overwrite a database by creating a database.
0
Attacker Value
Unknown

CVE-2006-7212

Disclosure Date: June 29, 2007 (last updated October 04, 2023)
Multiple buffer overflows in Firebird 1.5, one of which affects WNET, have unknown impact and attack vectors. NOTE: this issue might overlap CVE-2006-1240.
0
Attacker Value
Unknown

CVE-2006-1240

Disclosure Date: March 15, 2006 (last updated February 22, 2025)
Buffer overflow in inet_server.cpp in (1) fb_inet_server and (2) fbserver in Firebird 1.5.2.4731 allows local users to gain privileges via a long value of the -p argument.
0
Attacker Value
Unknown

CVE-2006-1241

Disclosure Date: March 15, 2006 (last updated February 22, 2025)
Firebird 1.5.2.4731 installs (1) fb_lock_mgr, (2) gds_drop, and (3) fb_inet_server with setuid firebird permissions, which might allow local users to gain privileges via a buffer overflow as identified by CVE-2006-1240, or possibly other vulnerabilities.
0
Attacker Value
Unknown

CVE-2004-1449

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7 allows remote attackers to determine the location of files on a user's hard drive by obscuring a file upload control and tricking the user into dragging text into that control.
0