CVE-2006-7211: Medium severity firebirdsql Firebird vulnerability
Published Jun 29, 2007
·Updated
fblockmgr in Firebird 1.5 uses weak permissions (0666) for the semaphore array, which allows local users to cause a denial of service (blocked query processing) by locking semaphores.
Affected Software
1 affected component
firebirdsql Firebird=1.5
Remediation
Event History
Jun 29, 2007
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-7211?
The severity of CVE-2006-7211 is considered moderate due to its potential for denial of service.
2
How do I fix CVE-2006-7211?
To fix CVE-2006-7211, you should upgrade to a later version of Firebird that addresses the semaphore permissions issue.
3
What type of attack does CVE-2006-7211 enable?
CVE-2006-7211 enables a local denial of service attack by allowing users to lock semaphores, blocking query processing.
4
Which version of Firebird is affected by CVE-2006-7211?
CVE-2006-7211 affects Firebird version 1.5.
5
Is CVE-2006-7211 exploitable remotely or locally?
CVE-2006-7211 is only exploitable locally, as it involves local users locking semaphores.