ID

VAR-201001-0461


TITLE

Ingres Database Heap Buffer Overflow Vulnerability

Trust: 0.3

sources: BID: 38001

DESCRIPTION

Ingres Database is prone to a heap-based buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data. Attackers can exploit this issue to execute arbitrary code with the privileges of the application or crash the affected application. Ingres Database 9.3 on Unix is vulnerable; other versions may also be affected.

Trust: 0.3

sources: BID: 38001

AFFECTED PRODUCTS

vendor:ingresmodel:databasescope:eqversion:9.3

Trust: 0.3

sources: BID: 38001

THREAT TYPE

network

Trust: 0.3

sources: BID: 38001

TYPE

Boundary Condition Error

Trust: 0.3

sources: BID: 38001

EXTERNAL IDS

db:BIDid:38001

Trust: 0.3

sources: BID: 38001

REFERENCES

url:http://www.ingres.com/

Trust: 0.3

url:http://intevydis.blogspot.com/2010/01/ingres-93-heap-overflow.html

Trust: 0.3

sources: BID: 38001

CREDITS

Evgeny Legerov

Trust: 0.3

sources: BID: 38001

SOURCES

db:BIDid:38001

LAST UPDATE DATE

2022-05-17T02:00:17.021000+00:00


SOURCES UPDATE DATE

db:BIDid:38001date:2010-02-09T15:31:00

SOURCES RELEASE DATE

db:BIDid:38001date:2010-01-29T00:00:00