[pkg-firebird-general] Bug#693210: server crash on prearing an empty query with tracing enabled

Damyan Ivanov dmn at debian.org
Wed Nov 14 09:35:02 UTC 2012


Source: firebird2.5
Version: 2.5.0
Severity: important
Tags: upstream fixed-upstream security
Forwarded: http://tracker.firebirdsql.org/browse/CORE-3884

With trace enabled, preparing an empty query crashes the server on line 91 of 
/src/jrd/trace/TraceDSQLHelpers.h, since the dereferenced m_request variable is 
NULL.

Tagged as 'security' since this is a remote crash, although it requires a valid 
user/pass.



More information about the pkg-firebird-general mailing list