9.8
CVSSv3

CVE-2019-13508

Published: 31/10/2019 Updated: 30/05/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

FreeTDS up to and including 1.1.11 has a Buffer Overflow.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

freetds freetds

canonical ubuntu linux 19.10

canonical ubuntu linux 18.04

canonical ubuntu linux 19.04

Vendor Advisories

Debian Bug report logs - #944012 freetds: CVE-2019-13508: Heap overflow in FreeTDS if UDT type is used with protocol 50 Package: src:freetds; Maintainer for src:freetds is Steve Langasek <vorlon@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 2 Nov 2019 20:03:01 UTC Severity: important ...
FreeTDS could be made to crash or run programs if it received specially crafted network traffic ...