cbcvebase.
CVE-2015-2788
published 2015-04-14

CVE-2015-2788: Multiple stack-based buffer overflows in the ib_fill_isqlda function in dbdimp.c in DBD-Firebird before 1.19 allow remote attackers to have unspecified impact…

PriorityP350critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
4.22%
90.0th percentile
Multiple stack-based buffer overflows in the ib_fill_isqlda function in dbdimp.c in DBD-Firebird before 1.19 allow remote attackers to have unspecified impact via unknown vectors that trigger an error condition, related to binding octets to columns.

Affected

4 ranges
VendorProductVersion rangeFixed in
debiandbd-firebird<= 1.18
debiandebian_linux
debianlibdbd-firebird-perl< libdbd-firebird-perl 1.18-2 (bookworm)libdbd-firebird-perl 1.18-2 (bookworm)
unzip_projectunzip>= 0 < 6.0-9ubuntu1.56.0-9ubuntu1.5

CVSS provenance

nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vendor_debian10.0CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.