CVE-2014-9323: Null Pointer Dereference
Last updated 24 July 2024
Other sources
The xdrstatusvector function in Firebird before 2.1.7 and 2.5.x before 2.5.3 SU1 allows remote attackers to cause a denial of service (NULL pointer dereference, segmentation fault, and crash) via an opresponse action with a non-empty status.
— Launchpad
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9323?
CVE-2014-9323 has been classified as a denial of service vulnerability due to a NULL pointer dereference.
How do I fix CVE-2014-9323?
To address CVE-2014-9323, you should upgrade to Firebird version 2.1.7 or 2.5.3 SU1 or later.
What versions of Firebird are affected by CVE-2014-9323?
CVE-2014-9323 affects Firebird versions prior to 2.1.7 and 2.5.x versions prior to 2.5.3 SU1.
What kind of attack can exploit CVE-2014-9323?
CVE-2014-9323 can be exploited by remote attackers to cause a segmentation fault and crash the server.
Is there any public exploit available for CVE-2014-9323?
As of now, there are no specific public exploits reported for CVE-2014-9323, but it poses a serious risk for system availability.