CVE-2007-5243 - CVE House
Back to Database
Status published Critical CVE-2007-5243

Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through...

Vulnerability Description

Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0.257, allow remote attackers to execute arbitrary code via (1) a long service attach request on TCP port 3050 to the (a) SVC_attach or (b) INET_connect function, (2) a long create request on TCP port 3050 to the (c) isc_create_database or (d) jrd8_create_database function, (3) a long attach request on TCP port 3050 to the (e) isc_attach_database or (f) PWD_db_aliased function, or unspecified vectors involving the (4) jrd8_attach_database or (5) expand_filename2 function.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2007-5243

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

borland software

View all reports →

Affected Software

interbase
Vulnerable Versions:
li_8.0.0.53, li_8.0.0.54, li_8.0.0.253, wi-o6.0.1.6, wi-o6.0.2.0, wi-v5.1.1.680, wi-v5.5.0.742, wi-v6.0.0.627, wi-v6.0.1.0, wi-v6.0.1.6, wi-v6.5.0.28, wi-v7.0.1.1, wi-v7.5.0.129, wi-v7.5.1.80, wi-v8.0.0.123, wi_5.1.1.680, wi_8.1.0.257

Timeline

Official Publish: October 6th, 2007
Last Modified: August 7th, 2024
Added to House: July 18th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.