vendor:
Firebird
by:
bob@dtors.net
7.5
CVSS
HIGH
Local exploit
CWE
Product Name: Firebird
Affected Version From: Firebird 1.0.2
Affected Version To: Firebird 1.0.2
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: FreeBSD 4.7-RELEASE
DSR-firebird.c
This is a proof of concept code for exploiting Firebird 1.0.2 on FreeBSD 4.7-RELEASE. It provides three targets: gds_inet_server, gds_lock_mgr, and gds_drop. The code contains shellcode for each target.
Mitigation:
Update to a patched version of Firebird.