solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing many integer fields with two different values, which allows remote attackers to cause a denial of service (invalid memory access and daemon crash) via a TCP session on port 1315.
Weaknesses in this category are related to improper calculation or conversion of numbers.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/62590 | vdb entry |
http://www.exploit-db.com/exploits/15261 | exploit |
http://www.vupen.com/english/advisories/2010/2715 | vdb entry vendor advisory |
http://secunia.com/advisories/41873 | third party advisory vendor advisory |
http://securitytracker.com/id?1024597 | vdb entry |
http://aluigi.altervista.org/adv/soliddb_1-adv.txt | exploit |