First published: Tue Jun 12 2007(Updated: )
Buffer overflow in fbserver.exe in Firebird SQL 2 before 2.0.1 allows remote attackers to execute arbitrary code via a large p_cnct_count value in a p_cnct structure in a connect (0x01) request to port 3050/tcp, related to "an InterBase version of gds32.dll."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dell NetVault Backup | =6.x | |
FirebirdSQL | <=2.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3181 is classified as a high severity vulnerability due to its potential for remote code execution.
To fix CVE-2007-3181, update Firebird SQL to version 2.0.1 or later to mitigate the buffer overflow issue.
CVE-2007-3181 affects Firebird SQL versions prior to 2.0.1 and BakBone NetVault 6.x.
Yes, CVE-2007-3181 can be exploited remotely by attackers sending specially crafted requests to the vulnerable server.
CVE-2007-3181 describes a buffer overflow attack that allows arbitrary code execution on affected systems.