First published: Tue Jan 29 2008(Updated: )
Stack-based buffer overflow in Firebird before 2.0.4, and 2.1.x before 2.1.0 RC1, might allow remote attackers to execute arbitrary code via a long username.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FirebirdSQL | <=2.1 | |
FirebirdSQL | <=2.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0467 has a high severity due to the potential for remote code execution.
To fix CVE-2008-0467, upgrade to Firebird version 2.0.4 or later, or 2.1.0 RC1 or later.
CVE-2008-0467 affects Firebird versions prior to 2.0.4 and versions 2.1.x before 2.1.0 RC1.
Yes, CVE-2008-0467 can be exploited remotely through a long username input.
The potential impacts of CVE-2008-0467 include arbitrary code execution and system compromise.