4.6
CVSSv2

CVE-2002-2087

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 480
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in Borland InterBase 6.0 allows local users to execute arbitrary code via a long INTERBASE environment variable when calling (1) gds_drop, (2) gds_lock_mgr, or (3) gds_inet_server.

Vulnerable Product Search on Vulmon Subscribe to Product

borland software interbase 6.0

Exploits

source: wwwsecurityfocuscom/bid/5044/info Interbase is a database distributed and maintained by Borland It is available for Unix and Linux operating systems A buffer overflow has been discovered in the gds_drop program packaged with Interbase This problem could allow a local user to execute the program with strings of arbitrary leng ...
/* DSR-firebirdc ------------------------------- Tested on: Firebird 102 FreeBSD 47-RELEASE This is Proof Of concept code bash-205a$ /DSR-firebird ( ( Firebird-102 Local exploit for Freebsd 47 ) ) ( ( by - bob@dtorsnet ) ) ---------------------------------------------------- Usage: /DSR-firebird <target# ...
source: wwwsecurityfocuscom/bid/5044/info Interbase is a database distributed and maintained by Borland It is available for Unix and Linux operating systems A buffer overflow has been discovered in the gds_drop program packaged with Interbase This problem could allow a local user to execute the program with strings of arbitrary length ...
source: wwwsecurityfocuscom/bid/7546/info Interbase is a database distributed and maintained by Borland It is available for Unix and Linux operating systems As Firebird is based on Borland/Inprise Interbase source code, it is very likely that Interbase is prone to this issue also A buffer overflow has been discovered in the setuid roo ...