unixODBC 'SQLDriverConnect()' 'SAVEFILE' Parameter Buffer Overflow Vulnerability
BID:46805
Info
unixODBC 'SQLDriverConnect()' 'SAVEFILE' Parameter Buffer Overflow Vulnerability
| Bugtraq ID: | 46805 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 09 2011 12:00AM |
| Updated: | Mar 09 2011 12:00AM |
| Credit: | Felipe Pena |
| Vulnerable: |
unixODBC Project unixODBC 2.3.0 |
| Not Vulnerable: | |
Discussion
unixODBC 'SQLDriverConnect()' 'SAVEFILE' Parameter Buffer Overflow Vulnerability
unixODBC is prone to a buffer-overflow vulnerability because it fails to adequately bounds-check user-supplied input before copying it to an insufficiently sized buffer.
Successfully exploiting this issue may allow an attacker to execute arbitrary code with the privileges of the user running the affected application. Failed exploit attempts will likely cause a denial of service.
unixODBC is prone to a buffer-overflow vulnerability because it fails to adequately bounds-check user-supplied input before copying it to an insufficiently sized buffer.
Successfully exploiting this issue may allow an attacker to execute arbitrary code with the privileges of the user running the affected application. Failed exploit attempts will likely cause a denial of service.
Exploit / POC
unixODBC 'SQLDriverConnect()' 'SAVEFILE' Parameter Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
unixODBC 'SQLDriverConnect()' 'SAVEFILE' Parameter Buffer Overflow Vulnerability
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.
References
unixODBC 'SQLDriverConnect()' 'SAVEFILE' Parameter Buffer Overflow Vulnerability
References:
References:
- CVE request: buffer overflow in unixODBC's SQLDriverConnect() (Felipe Pena)
- SCM Repositories - unixodbc rev 27 (lurcher)
- unixODBC Project Homepage (unixODBC Project)