First published: Fri Jun 29 2007(Updated: )
fb_lock_mgr in Firebird 1.5 uses weak permissions (0666) for the semaphore array, which allows local users to cause a denial of service (blocked query processing) by locking semaphores.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FirebirdSQL | =1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2006-7211 is considered moderate due to its potential for denial of service.
To fix CVE-2006-7211, you should upgrade to a later version of Firebird that addresses the semaphore permissions issue.
CVE-2006-7211 enables a local denial of service attack by allowing users to lock semaphores, blocking query processing.
CVE-2006-7211 affects Firebird version 1.5.
CVE-2006-7211 is only exploitable locally, as it involves local users locking semaphores.