Описание
Security update for firebird
This update for firebird fixes the following issues:
- CVE-2025-54989: Fixed NULL pointer dereference in XDR message parsing leading to denial-of-service (ZDI-CAN-26486, bsc#1248143)
Список пакетов
SUSE Linux Enterprise Module for Package Hub 15 SP6
firebird-3.0.4.33054-150200.3.3.1
firebird-examples-3.0.4.33054-150200.3.3.1
firebird-server-3.0.4.33054-150200.3.3.1
firebird-utils-3.0.4.33054-150200.3.3.1
libfbclient-devel-3.0.4.33054-150200.3.3.1
libfbclient2-3.0.4.33054-150200.3.3.1
libib_util-3.0.4.33054-150200.3.3.1
libib_util-devel-3.0.4.33054-150200.3.3.1
SUSE Linux Enterprise Module for Package Hub 15 SP7
firebird-3.0.4.33054-150200.3.3.1
firebird-examples-3.0.4.33054-150200.3.3.1
firebird-server-3.0.4.33054-150200.3.3.1
firebird-utils-3.0.4.33054-150200.3.3.1
libfbclient-devel-3.0.4.33054-150200.3.3.1
libfbclient2-3.0.4.33054-150200.3.3.1
libib_util-3.0.4.33054-150200.3.3.1
libib_util-devel-3.0.4.33054-150200.3.3.1
openSUSE Leap 15.6
firebird-3.0.4.33054-150200.3.3.1
firebird-doc-3.0.4.33054-150200.3.3.1
firebird-examples-3.0.4.33054-150200.3.3.1
firebird-server-3.0.4.33054-150200.3.3.1
firebird-utils-3.0.4.33054-150200.3.3.1
libfbclient-devel-3.0.4.33054-150200.3.3.1
libfbclient2-3.0.4.33054-150200.3.3.1
libfbclient2-32bit-3.0.4.33054-150200.3.3.1
libib_util-3.0.4.33054-150200.3.3.1
libib_util-32bit-3.0.4.33054-150200.3.3.1
libib_util-devel-3.0.4.33054-150200.3.3.1
Ссылки
- Link for SUSE-SU-2025:02991-1
- E-Mail link for SUSE-SU-2025:02991-1
- SUSE Security Ratings
- SUSE Bug 1248143
- SUSE CVE CVE-2025-54989 page
Описание
Firebird is a relational database. Prior to versions 3.0.13, 4.0.6, and 5.0.3, there is an XDR message parsing NULL pointer dereference denial-of-service vulnerability in Firebird. This specific flaw exists within the parsing of xdr message from client. It leads to NULL pointer dereference and DoS. This issue has been patched in versions 3.0.13, 4.0.6, and 5.0.3.
Затронутые продукты
SUSE Linux Enterprise Module for Package Hub 15 SP6:firebird-3.0.4.33054-150200.3.3.1
SUSE Linux Enterprise Module for Package Hub 15 SP6:firebird-examples-3.0.4.33054-150200.3.3.1
SUSE Linux Enterprise Module for Package Hub 15 SP6:firebird-server-3.0.4.33054-150200.3.3.1
SUSE Linux Enterprise Module for Package Hub 15 SP6:firebird-utils-3.0.4.33054-150200.3.3.1
Ссылки
- CVE-2025-54989
- SUSE Bug 1248143