CVE-2007-4667
published 2007-09-04CVE-2007-4667: Unspecified vulnerability in the Services API in Firebird before 2.0.2 allows remote attackers to cause a denial of service, aka CORE-1149.
PriorityP421medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.13%
79.6th percentile
Unspecified vulnerability in the Services API in Firebird before 2.0.2 allows remote attackers to cause a denial of service, aka CORE-1149.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| firebirdsql | firebird | <= 2.0.1 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2007-6352 libexif integer overflow
bugzilla·2007-12-14·CVSS 6.8
CVE-2007-6352 [MEDIUM] CVE-2007-6352 libexif integer overflow
CVE-2007-6352 libexif integer overflow
An integer overflow flaw was found in libexif. This flaw could be leveraged by
an attacker to execute arbitrary code withe the permissions of the application
parsing the EXIF image data.
Discussion:
Created attachment 289541
Upstream patch
---
Fixed in affected Red Hat Enterprise Linux versions:
http://rhn.redhat.com/errata/RHSA-2007-1165.html
http://rhn.redhat.com/errata/RHSA-2007-1166.html
---
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2007-1165.html
http://rhn.redhat.com/errata/RHSA-2007-1166.html
Fedora:
https://admin.fedoraproject.org/updates/F7/FEDORA-2007-4608
https://admin.fedoraproject.org/updates/F8/FEDORA-2007-4667
Bugzilla
CVE-2007-6351 libexif infinite recursion flaw (DoS)
bugzilla·2007-12-14·CVSS 4.3
CVE-2007-6351 [MEDIUM] CVE-2007-6351 libexif infinite recursion flaw (DoS)
CVE-2007-6351 libexif infinite recursion flaw (DoS)
An infinite recursion flaw was found in libexif. This could be leveraged by an
attacker to crash an application using libexif to process image data content.
Discussion:
Created attachment 289531
Upstream patch taken from CVS
---
Fixed in affected Red Hat Enterprise Linux versions:
http://rhn.redhat.com/errata/RHSA-2007-1165.html
---
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2007-1165.html
Fedora:
https://admin.fedoraproject.org/updates/F7/FEDORA-2007-4608
https://admin.fedoraproject.org/updates/F8/FEDORA-2007-4667
Bugzilla
CVE-2005-4667 unzip long filename buffer overflow
bugzilla·2006-03-24·CVSS 3.7
CVE-2005-4667 [LOW] CVE-2005-4667 unzip long filename buffer overflow
CVE-2005-4667 unzip long filename buffer overflow
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHBA-2007-0418.html
Discussion:
Call which can be closed. Errata RHBA-2007:0418-2 delivers
unzip-5.50-35.EL3.i386.rpm
Internal Status set to 'Resolved'
Status set to: Closed by Client
This event sent from IssueTracker by yves.begrand
issue 88545
http://secunia.com/advisories/26615http://secunia.com/advisories/29501http://sourceforge.net/project/shownotes.php?release_id=535898http://tracker.firebirdsql.org/browse/CORE-1149http://www.debian.org/security/2008/dsa-1529http://www.firebirdsql.org/index.php?op=files&id=engine_202http://www.firebirdsql.org/rlsnotes/Firebird-2.0.2-ReleaseNotes.pdfhttp://www.securityfocus.com/bid/25497http://www.vupen.com/english/advisories/2007/3021https://exchange.xforce.ibmcloud.com/vulnerabilities/36356http://secunia.com/advisories/26615http://secunia.com/advisories/29501http://sourceforge.net/project/shownotes.php?release_id=535898http://tracker.firebirdsql.org/browse/CORE-1149http://www.debian.org/security/2008/dsa-1529http://www.firebirdsql.org/index.php?op=files&id=engine_202http://www.firebirdsql.org/rlsnotes/Firebird-2.0.2-ReleaseNotes.pdfhttp://www.securityfocus.com/bid/25497http://www.vupen.com/english/advisories/2007/3021https://exchange.xforce.ibmcloud.com/vulnerabilities/36356
2007-09-04
Published