Buffer overflow in Firebird 1.0.2 and other versions prior to 1.5, and possibly other products that use the InterBase codebase, allows local users to execute arbitrary code via a long INTERBASE environment variable when calling (1) gds_inet_server, (2) gds_lock_mgr, or (3) gds_drop.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
firebirdsql firebird 1.0.2 |