PT-2006-2257 · Firebird · Firebird

Published

2006-03-15

·

Updated

2018-10-18

·

CVE-2006-1241

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Firebird version 1.5.2.4731
Description The issue is related to the installation of certain components with setuid firebird permissions, which could potentially allow local users to gain privileges. This might occur due to a buffer overflow or possibly other vulnerabilities.
Recommendations For Firebird version 1.5.2.4731, consider removing setuid firebird permissions from the fb lock mgr, gds drop, and fb inet server installations as a temporary mitigation measure. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-1241

Affected Products

Firebird