Description
Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibly unspecified versions on Solaris, allows remote attackers to execute arbitrary code via a long attach request on TCP port 3050 to the open_marker_file function.
Affected products
- borland_software / interbaseli_8.0.0.53 – li_8.0.0.53
- borland_software / interbaseli_8.0.0.54 – li_8.0.0.54
- borland_software / interbaseli_8.0.0.253 – li_8.0.0.253
References
- MISChttp://www.securityfocus.com/bid/25917
- MISChttp://risesecurity.org/blog/entry/3/
- MISChttp://www.securitytracker.com/id?1018772
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2007/3381
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/36956
- MISChttp://osvdb.org/38610
- MISChttp://risesecurity.org/advisory/RISE-2007002/
- MISChttp://risesecurity.org/exploit/11/
- VENDOR_ADVISORYhttp://secunia.com/advisories/27058