Subject RE: [POSSIBLE SPAM]Re: [firebird-support] Buffer overflow in fbserver.exe in Firebird SQL 2 before 2.0.1
Author Jochen Faas
Dmitry,

thanks for the info.

Do you know when 1.5.6 is scheduled to be released?

Thanks,
Jochen
________________________________________
From: firebird-support@yahoogroups.com [firebird-support@yahoogroups.com] On Behalf Of Dmitry Yemanov [dimitr@...]
Sent: Friday, July 10, 2009 11:46 PM
To: firebird-support@yahoogroups.com
Subject: [POSSIBLE SPAM]Re: [firebird-support] Buffer overflow in fbserver.exe in Firebird SQL 2 before 2.0.1

Jochen Faas wrote:

> http://web.nvd.nist.gov/view/vuln/detail?execution=e1s1
>
> mentions that "cpe:/a:firebirdsql:firebird:2.0.0 and previous versions" are affected,
>
> does anybody know if the 1.5x branch of Firebird is actually affected by this vulnerability?

All released versions of v1.5 are affected. This issue is fixed in the
upcoming v1.5.6 only.

Dmitry