SID 14602

References

Bugtraq

CVE

Msg

"EXPLOIT Borland Interbase open_marker_file overflow attempt"

Summary

This event is generated when an attempt is made to exploit a known vulnerability in interbase.

Classtype

attempted-user

Impact

Denial of Service. Information disclosure. Loss of integrity. Complete admin access.

Detailed Information

Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibly unspecified versions on Solaris, allows remote attackers to execute arbitrary code via a long attach request on TCP port 3050 to the open_marker_file function.

Affected Systems

  • borland_software interbase li_8.0.0.253
  • borland_software interbase li_8.0.0.53
  • borland_software interbase li_8.0.0.54

Ease Of Attack

Simple.

False Positives

None known.

False Negatives

None known.

Corrective Action

Upgrade to the latest non-affected version of the software.

Apply the appropriate vendor supplied patches.

Contributors

  • Sourcefire Vulnerability Research Team
  • This document was generated from data supplied by the National Vulnerability Database. A product of the National Institute of Standards and Technology.
  • For more information see http://nvd.nist.gov/