CVE-2010-4057
Severity CVSS v4.0:
Pending analysis
Type:
CWE-189
Numeric Errors
Publication date:
23/10/2010
Last modified:
11/04/2025
Description
solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing many integer fields with two different values, which allows remote attackers to cause a denial of service (invalid memory access and daemon crash) via a TCP session on port 1315.
Impact
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:ibm:soliddb:*:*:*:*:*:*:*:* | 6.5.0.3 (including) | |
cpe:2.3:a:ibm:soliddb:4.5.167:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:4.5.168:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:4.5.169:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:4.5.173:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:4.5.175:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:4.5.176:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:4.5.178:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:6.0.1060:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:6.0.1061:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:6.0.1064:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:6.0.1065:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:6.0.1066:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:6.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:ibm:soliddb:6.1.20:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://aluigi.altervista.org/adv/soliddb_1-adv.txt
- http://secunia.com/advisories/41873
- http://securitytracker.com/id?1024597=
- http://www.exploit-db.com/exploits/15261
- http://www.vupen.com/english/advisories/2010/2715
- https://exchange.xforce.ibmcloud.com/vulnerabilities/62590
- http://aluigi.altervista.org/adv/soliddb_1-adv.txt
- http://secunia.com/advisories/41873
- http://securitytracker.com/id?1024597=
- http://www.exploit-db.com/exploits/15261
- http://www.vupen.com/english/advisories/2010/2715
- https://exchange.xforce.ibmcloud.com/vulnerabilities/62590