First published: Sat Oct 06 2007(Updated: )
Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibly unspecified versions on Solaris, allows remote attackers to execute arbitrary code via a long attach request on TCP port 3050 to the open_marker_file function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
InterBase | =li_8.0.0.53 | |
InterBase | =li_8.0.0.54 | |
InterBase | =li_8.0.0.253 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5244 is considered a critical vulnerability due to its potential for remote code execution.
To mitigate CVE-2007-5244, upgrade to a patched version of Borland InterBase that addresses the buffer overflow issue.
CVE-2007-5244 affects Borland InterBase LI versions 8.0.0.53 through 8.1.0.253 on Linux and possibly unspecified versions on Solaris.
CVE-2007-5244 allows remote attackers to execute arbitrary code through a crafted attach request.
A possible workaround for CVE-2007-5244 is to block access to TCP port 3050 until a fix can be applied.