OpenBase 10.0.5 and earlier allows remote authenticated users to trigger a free of an arbitrary memory location via long strings in a SELECT statement. NOTE: this might be a buffer overflow, but it is not clear.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2007-11-10T02:00:00Z

Updated: 2024-09-16T19:46:46.535Z

Reserved: 2007-11-09T00:00:00Z

Link: CVE-2007-5928

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2007-11-10T02:46:00.000

Modified: 2008-09-05T04:00:00.000

Link: CVE-2007-5928

cve-icon Redhat

No data.