Firebird
cpe:2.3:a:firebird:firebird:*:*:*:*:*:*:*, +1 more
- < 3.0.13
A denial-of-service vulnerability has been identified in Firebird relational database management system, prior to versions 3.0.13, 4.0.6, and 5.0.3. The issue arises from a NULL pointer dereference during the parsing of XDR messages from clients, leading to a crash or unresponsiveness of the database server.
Exploitation of this vulnerability causes a NULL pointer dereference, leading to a denial-of-service condition where the database server becomes unresponsive or crashes.
Users can upgrade to Firebird versions 3.0.13, 4.0.6, or 5.0.3 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.