PT-2026-33483 · Firebird+1 · Firebird+1
CVSS v3.1
9.9
Critical
| Vector | AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Firebird versions prior to 5.0.4
Firebird versions prior to 4.0.7
Firebird versions prior to 3.0.14
Description
The
xdr status vector() function fails to handle the isc arg cstring type during the decoding of an 'op response' packet. This allows an unauthenticated attacker to cause a server crash by sending a specially crafted 'op response' packet to the server.Recommendations
Update to version 5.0.4
Update to version 4.0.7
Update to version 3.0.14
Exploit
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Firebird
Red Os