Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Tue, 09 Dec 2014 21:54:57 -0700
From: "Vincent Danen" <vdanen@...hat.com>
To: oss-security <oss-security@...ts.openwall.com>
Subject: CVE request: denial of service flaw in firebird

I've not seen a CVE for this; could one be assigned?  Thanks.

It was found that an unauthenticated remote attacker could send a 
malformed network packet to a firebird server, which would cause the 
server to crash.

http://www.firebirdsql.org/en/news/security-updates-for-v2-1-and-v2-5-series-66011/
http://tracker.firebirdsql.org/browse/CORE-4630
http://sourceforge.net/p/firebird/code/60331/
https://bugs.mageia.org/show_bug.cgi?id=14726
https://bugzilla.redhat.com/show_bug.cgi?id=1172445


-- 
Vincent Danen / Red Hat Product Security

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.