First published: Sat Oct 23 2010(Updated: )
Stack-based buffer overflow in an unspecified logging function in oninit.exe in IBM Informix Dynamic Server (IDS) 11.10 before 11.10.xC2W2 and 11.50 before 11.50.xC1 allows remote authenticated users to execute arbitrary code via a crafted EXPLAIN directive, aka idsdb00154125 and idsdb00154243.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Informix Dynamic Server | =11.50 | |
IBM Informix Dynamic Server | =11.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4053 is rated as a high severity vulnerability due to the potential for remote code execution.
To fix CVE-2010-4053, upgrade IBM Informix Dynamic Server to versions 11.10.xC2W2 or later for 11.10 and to 11.50.xC1 or later for 11.50.
CVE-2010-4053 affects IBM Informix Dynamic Server versions 11.10 before 11.10.xC2W2 and 11.50 before 11.50.xC1.
CVE-2010-4053 can be exploited by remote authenticated users who can manipulate the EXPLAIN directive.
CVE-2010-4053 is a stack-based buffer overflow vulnerability that allows execution of arbitrary code.