CVE-2008-0727: Buffer Overflow
Multiple buffer overflows in oninit.exe in IBM Informix Dynamic Server (IDS) 7.x through 11.x allow (1) remote attackers to execute arbitrary code via a long password and (2) remote authenticated users to execute arbitrary code via a long DBPATH value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0727?
CVE-2008-0727 is classified as a high severity vulnerability due to its ability to allow remote attackers to execute arbitrary code.
How do I fix CVE-2008-0727?
To fix CVE-2008-0727, upgrade IBM Informix Dynamic Server to a version that is not vulnerable, as listed in the vendor's security advisories.
What versions of IBM Informix Dynamic Server are affected by CVE-2008-0727?
CVE-2008-0727 affects IBM Informix Dynamic Server versions 7.x through 11.x.
What types of attacks are possible with CVE-2008-0727?
CVE-2008-0727 allows attackers to exploit buffer overflows via a long password or a long DBPATH value.
Are both remote and authenticated users vulnerable in CVE-2008-0727?
Yes, both remote attackers and authenticated users can exploit CVE-2008-0727 if they provide overly long input values.