NULL pointer dereference in Firebird - CVE-2026-28212
Published: April 20, 2026
Firebird
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a null pointer dereference in xdr_slice() when processing an op_slice packet. A remote attacker can send a specially crafted packet to cause a denial of service.
The issue is triggered when slice_response->p_slr_sdl is unprepared and contains a null pointer that is passed to SDL_info(), causing the server to crash with SIGSEGV.