CVE-2010-4057
IBM solidDB <= 6.5.0.3 - Denial of Service via Malformed Packet Data
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-4057. PoCs published by Luigi Auriemma.
AI-analyzed exploit summary This is a writeup describing a Denial of Service (DoS) vulnerability in IBM solidDB <= 6.5.0.3. The vulnerability is triggered by sending a malformed packet to the solid.exe service on port 1315, causing stack exhaustion, NULL pointer dereference, or invalid memory access.
Description
solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing many integer fields with two different values, which allows remote attackers to cause a denial of service (invalid memory access and daemon crash) via a TCP session on port 1315.
Exploits (1)
This is a writeup describing a Denial of Service (DoS) vulnerability in IBM solidDB <= 6.5.0.3. The vulnerability is triggered by sending a malformed packet to the solid.exe service on port 1315, causing stack exhaustion, NULL pointer dereference, or invalid memory access.