Firebird Relational Database 'protocol.cpp' XDR Protocol Remote Memory Corruption Vulnerability
BID:27403
Info
Firebird Relational Database 'protocol.cpp' XDR Protocol Remote Memory Corruption Vulnerability
| Bugtraq ID: | 27403 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-0387 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 28 2008 12:00AM |
| Updated: | Mar 27 2008 01:39PM |
| Credit: | Damian Frizza and Alfredo Ortega from Core Security Technologies are credited with discovering this vulnerability. |
| Vulnerable: |
Gentoo Linux Firebird Firebird 2.0.3 Firebird Firebird 2.0.1 Firebird Firebird 1.5.5 Firebird Firebird 1.5.4 Firebird Firebird 1.0.3 Firebird Firebird 2.5.0 Firebird Firebird 2.1 Beta 2 Firebird Firebird 2.0 Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: |
Firebird Firebird 2.0.4 Firebird Firebird 1.5.6 Firebird Firebird 2.1.0 RC1 |
Discussion
Firebird Relational Database 'protocol.cpp' XDR Protocol Remote Memory Corruption Vulnerability
Firebird is prone to an integer-overflow vulnerability because it fails to ensure that integer values aren't overrun. Attackers may exploit this issue to overflow a buffer and to corrupt process memory.
Attackers may be able to execute arbitrary machine code in the context of an affected application. Failed exploit attempts will likely result in a denial-of-service condition.
Firebird is prone to an integer-overflow vulnerability because it fails to ensure that integer values aren't overrun. Attackers may exploit this issue to overflow a buffer and to corrupt process memory.
Attackers may be able to execute arbitrary machine code in the context of an affected application. Failed exploit attempts will likely result in a denial-of-service condition.
Exploit / POC
Firebird Relational Database 'protocol.cpp' XDR Protocol Remote Memory Corruption Vulnerability
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploit code is available:
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploit code is available:
Solution / Fix
Firebird Relational Database 'protocol.cpp' XDR Protocol Remote Memory Corruption Vulnerability
Solution:
The vendor has indicated that this issue is fixed in Firebird 1.56, 2.0.4, and 2.1.0 RC1. Please see the references for more information.
Solution:
The vendor has indicated that this issue is fixed in Firebird 1.56, 2.0.4, and 2.1.0 RC1. Please see the references for more information.
References
Firebird Relational Database 'protocol.cpp' XDR Protocol Remote Memory Corruption Vulnerability
References:
References:
- Firebird Homepage (Firebird)
- Garbage data in the incoming remote packet may crash the server (Firebird)
- CORE-2007-1219: Firebird Remote Memory Corruption (Core Security Technologies Advisories
) - Firebird remote BOF POC ([email protected])
- CORE-2007-1219 Firebird Remote Memory Corruption (Core Security Technologies )