Stack-based buffer overflow in Firebird - CVE-2023-41038
Published: March 20, 2024 / Updated: April 20, 2026
Firebird
firebird.sourceforge.net
Description
The vulnerability allows a remote user to cause a denial of service.
The vulnerability exists due to stack corruption in the SET BIND statement handling when processing a specially crafted SET BIND statement. A remote user can issue a specially crafted SET BIND statement to cause a denial of service.
Exploitation requires minimum access to the server.