Firebird is a relational database. Prior to versions 3.0.13, 4.0.6, and 5.0.3, there is an XDR message parsing NULL pointer dereference denial-of-service vulnerability in Firebird. This specific flaw exists within the parsing of xdr message from client. It leads to NULL pointer dereference and DoS. This issue has been patched in versions 3.0.13, 4.0.6, and 5.0.3.
Metrics
Affected Vendors & Products
References
History
Sat, 16 Aug 2025 21:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Firebirdsql
Firebirdsql firebird |
|
Vendors & Products |
Firebirdsql
Firebirdsql firebird |
Fri, 15 Aug 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 15 Aug 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Firebird is a relational database. Prior to versions 3.0.13, 4.0.6, and 5.0.3, there is an XDR message parsing NULL pointer dereference denial-of-service vulnerability in Firebird. This specific flaw exists within the parsing of xdr message from client. It leads to NULL pointer dereference and DoS. This issue has been patched in versions 3.0.13, 4.0.6, and 5.0.3. | |
Title | Firebird XDR Message Parsing NULL Pointer Dereference Denial-of-Service Vulnerability | |
Weaknesses | CWE-476 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-08-15T15:04:19.097Z
Updated: 2025-08-15T19:08:38.587Z
Reserved: 2025-08-04T17:34:24.419Z
Link: CVE-2025-54989

Updated: 2025-08-15T19:08:28.671Z

Status : Received
Published: 2025-08-15T15:15:32.597
Modified: 2025-08-15T15:15:32.597
Link: CVE-2025-54989

No data.