Lucene search

K
cveMitreCVE-2010-4057
HistoryOct 23, 2010 - 8:39 p.m.

CVE-2010-4057

2010-10-2320:39:05
CWE-189
mitre
web.nvd.nist.gov
23
cve-2010-4057
ibm soliddb
denial of service
remote attackers
tcp session
port 1315

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.5

Confidence

Low

EPSS

0.025

Percentile

90.2%

solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing many integer fields with two different values, which allows remote attackers to cause a denial of service (invalid memory access and daemon crash) via a TCP session on port 1315.

Affected configurations

Nvd
Node
ibmsoliddbRange6.5.0.3
OR
ibmsoliddbMatch4.5.167
OR
ibmsoliddbMatch4.5.168
OR
ibmsoliddbMatch4.5.169
OR
ibmsoliddbMatch4.5.173
OR
ibmsoliddbMatch4.5.175
OR
ibmsoliddbMatch4.5.176
OR
ibmsoliddbMatch4.5.178
OR
ibmsoliddbMatch6.0.1060
OR
ibmsoliddbMatch6.0.1061
OR
ibmsoliddbMatch6.0.1064
OR
ibmsoliddbMatch6.0.1065
OR
ibmsoliddbMatch6.0.1066
OR
ibmsoliddbMatch6.1
OR
ibmsoliddbMatch6.1.20
OR
ibmsoliddbMatch6.3.33
OR
ibmsoliddbMatch6.3.37
OR
ibmsoliddbMatch6.5.0.0
OR
ibmsoliddbMatch6.5.0.1
OR
ibmsoliddbMatch6.5.0.2
OR
ibmsoliddbMatch6.30.0039
OR
ibmsoliddbMatch6.30.0040
OR
ibmsoliddbMatch6.30.0044
OR
ibmsoliddbMatch06.30.0047
VendorProductVersionCPE
ibmsoliddb*cpe:2.3:a:ibm:soliddb:*:*:*:*:*:*:*:*
ibmsoliddb4.5.167cpe:2.3:a:ibm:soliddb:4.5.167:*:*:*:*:*:*:*
ibmsoliddb4.5.168cpe:2.3:a:ibm:soliddb:4.5.168:*:*:*:*:*:*:*
ibmsoliddb4.5.169cpe:2.3:a:ibm:soliddb:4.5.169:*:*:*:*:*:*:*
ibmsoliddb4.5.173cpe:2.3:a:ibm:soliddb:4.5.173:*:*:*:*:*:*:*
ibmsoliddb4.5.175cpe:2.3:a:ibm:soliddb:4.5.175:*:*:*:*:*:*:*
ibmsoliddb4.5.176cpe:2.3:a:ibm:soliddb:4.5.176:*:*:*:*:*:*:*
ibmsoliddb4.5.178cpe:2.3:a:ibm:soliddb:4.5.178:*:*:*:*:*:*:*
ibmsoliddb6.0.1060cpe:2.3:a:ibm:soliddb:6.0.1060:*:*:*:*:*:*:*
ibmsoliddb6.0.1061cpe:2.3:a:ibm:soliddb:6.0.1061:*:*:*:*:*:*:*
Rows per page:
1-10 of 241

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.5

Confidence

Low

EPSS

0.025

Percentile

90.2%