Insufficient checks in the UDF subsystem in Firebird 2.5.x before 2.5.7 and 3.0.x before 3.0.2 allow remote authenticated users to execute code by using a 'system' entrypoint from fbudf.so.
{ "availability": "No subscription required", "binaries": [ { "binary_name": "firebird-dev", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" }, { "binary_name": "firebird2.5-classic", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" }, { "binary_name": "firebird2.5-classic-common", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" }, { "binary_name": "firebird2.5-common", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" }, { "binary_name": "firebird2.5-examples", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" }, { "binary_name": "firebird2.5-server-common", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" }, { "binary_name": "firebird2.5-super", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" }, { "binary_name": "firebird2.5-superclassic", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" }, { "binary_name": "libfbclient2", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" }, { "binary_name": "libfbembed2.5", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" }, { "binary_name": "libib-util", "binary_version": "2.5.2.26540.ds4-9ubuntu1.1" } ] }
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_name": "firebird-dev", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" }, { "binary_name": "firebird2.5-classic", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" }, { "binary_name": "firebird2.5-classic-common", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" }, { "binary_name": "firebird2.5-common", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" }, { "binary_name": "firebird2.5-examples", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" }, { "binary_name": "firebird2.5-server-common", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" }, { "binary_name": "firebird2.5-super", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" }, { "binary_name": "firebird2.5-superclassic", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" }, { "binary_name": "libfbclient2", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" }, { "binary_name": "libfbembed2.5", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" }, { "binary_name": "libib-util", "binary_version": "2.5.4.26856.ds4-1ubuntu0.1~esm1" } ] }