solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing a single integer field, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a TCP session on port 1315.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:20
Type | Values Removed | Values Added |
---|---|---|
References | () http://aluigi.altervista.org/adv/soliddb_1-adv.txt - Exploit | |
References | () http://secunia.com/advisories/41873 - Vendor Advisory | |
References | () http://securitytracker.com/id?1024597 - | |
References | () http://www.exploit-db.com/exploits/15261 - Exploit | |
References | () http://www.vupen.com/english/advisories/2010/2715 - Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/62590 - |
Information
Published : 2010-10-23 20:39
Updated : 2025-04-11 00:51
NVD link : CVE-2010-4056
Mitre link : CVE-2010-4056
CVE.ORG link : CVE-2010-4056
JSON object : View
Products Affected
ibm
- soliddb
CWE