Skip to content

Locally exploitable stack overflow [CORE167] #496

Description

@firebird-automations

Submitted by: lthegler (lthegler)

SFID: 739480#⁠
Submitted By: lthegler

According to http://packetstormsecurity.nl/0305-
exploits/dsr-adv001.txt, firebird (at least versions 1.0.0
and 1.0.2) suffers from several locally exploitable stack
overflows:

<quote>
Firebird has 3 binarys [gds_inet_server, gds_drop, and
gds_lock_mgr], which all use insufficent bounds
checking in conjunction with getenv(), making each one
succeptable to local exploitation.
</qoute>

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions