Insufficient checks in the UDF subsystem in Firebird 2.5.x before 2.5.7 and 3.0.x before 3.0.2 allow remote authenticated users to execute code by using a 'system' entrypoint from fbudf.so.
Metrics
Affected Vendors & Products
References
History
Fri, 10 Oct 2025 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:firebirdsql:firebird:2.5.2:*:*:*:*:*:*:* cpe:2.3:a:firebirdsql:firebird:2.5.3:*:*:*:*:*:*:* cpe:2.3:a:firebirdsql:firebird:2.5.4:*:*:*:*:*:*:* cpe:2.3:a:firebirdsql:firebird:2.5.5:*:*:*:*:*:*:* cpe:2.3:a:firebirdsql:firebird:2.5.6:*:*:*:*:*:*:* cpe:2.3:a:firebirdsql:firebird:3.0.1:*:*:*:*:*:*:* cpe:2.3:a:firebirdsql:firebird:3.0:*:*:*:*:*:*:* |
cpe:2.3:a:firebirdsql:firebird:*:*:*:*:*:*:*:* |
| Metrics |
cvssV3_0
|
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published: 2017-03-24T10:00:00
Updated: 2024-08-05T15:25:49.245Z
Reserved: 2017-02-28T00:00:00
Link: CVE-2017-6369
No data.
Status : Analyzed
Published: 2017-03-24T10:59:00.207
Modified: 2025-10-10T10:24:43.480
Link: CVE-2017-6369
No data.