CVE-2010-4056 Information

Share on:

Description

solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing a single integer field which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a TCP session on port 1315.

Reference

http://aluigi.altervista.org/adv/soliddb_1-adv.txt http://secunia.com/advisories/41873 http://securitytracker.com/id?1024597 http://www.exploit-db.com/exploits/15261 http://www.vupen.com/english/advisories/2010/2715 https://exchange.xforce.ibmcloud.com/vulnerabilities/62590