CVE-2007-4666Improper Restriction of Operations within the Bounds of a Memory Buffer in Firebird

Severity
5.0MEDIUMNVD
EPSS
1.8%
top 17.08%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 4
Latest updateMay 1

Description

Unspecified vulnerability in the server in Firebird before 2.0.2, when a Superserver/TCP/IP environment is configured, allows remote attackers to cause a denial of service (CPU and memory consumption) via "large network packets with garbage", aka CORE-1397.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-mrhh-xc2v-m6rc: Unspecified vulnerability in the server in Firebird before 22022-05-01
CVEList
CVE-2007-4666: Unspecified vulnerability in the server in Firebird before 22007-09-04
CVE-2007-4666 — Firebirdsql Firebird vulnerability | cvebase