Firebird

Firebirdsql · 47 CVEs

CVE-2026-40342
CRITICAL

Firebird: Path Traversal + Arbitrary File Write Leads to Remote Code Execution

Apr 17, 2026

CVE-2026-35215
HIGH

Firebird: DoS via malicious slice descriptor in slice packet

Apr 17, 2026

CVE-2026-34232
HIGH

Firebird: DoS via `op_response` packet from client

Apr 17, 2026

CVE-2026-33337
HIGH

Firebird has a buffer overflow when parsing corrupted slice packets

Apr 17, 2026

CVE-2026-28224
HIGH

Firebird Null Pointer Dereference via CryptCallback causes DOS

Apr 17, 2026

CVE-2026-28214
MEDIUM

Firebird server hangs when using specific clumplet on batch creation

Apr 17, 2026

CVE-2026-27890
HIGH

Firebird has Pre-Auth DOS when Processing Out of Order CNCT_specific_data Segments

Apr 17, 2026

CVE-2026-28212
HIGH

Firebird has potential server crash via null pointer dereference when processing op_slice packet

Apr 17, 2026

CVE-2025-65104
HIGH

Firebird: Information leak vulnerability in firebird3 client when used with newer server

Apr 17, 2026

CVE-2025-24975
HIGH

Firebird Non-Authorized Access to Encrypted Database Using Execute Statement on External

Aug 15, 2025

CVE-2025-54989
HIGH

Firebird XDR Message Parsing NULL Pointer Dereference Denial-of-Service Vulnerability

Aug 15, 2025

CVE-2024-35166
HIGH

WordPress FileBird – WordPress Media Library Folders & File Manager plugin <= 5.6.3 - Sensitive Data Exposure vulnerabi…

May 13, 2024

CVE-2023-41038
HIGH

Server crash when using specific form of SET BIND statement

Mar 20, 2024

CVE-2017-11509
HIGH

firebird: Firebird fbudf Module Authenticated Remote Code Execution

Mar 28, 2018

CVE-2017-6369
HIGH

Insufficient checks in the UDF subsystem in Firebird 2.5.x before 2.5.7 and 3.0.x before 3.0.2 allow remote authenticat…

Mar 24, 2017

CVE-2016-1569
MEDIUM

FireBird 2.5.5 allows remote authenticated users to cause a denial of service (daemon crash) by using service manager t…

Jan 13, 2016

CVE-2014-9323
MEDIUM

The xdr_status_vector function in Firebird before 2.1.7 and 2.5.x before 2.5.3 SU1 allows remote attackers to cause a d…

Dec 16, 2014

CVE-2013-2492
MEDIUM

Stack-based buffer overflow in Firebird 2.1.3 through 2.1.5 before 18514, and 2.5.1 through 2.5.3 before 26623, on Wind…

Mar 15, 2013

CVE-2012-5529
LOW

TraceManager in Firebird 2.5.0 and 2.5.1, when trace is enabled, allows remote authenticated users to cause a denial of…

Nov 20, 2012

CVE-2009-2620
MEDIUM

firebird-superserver: NULL ptr dereference (DoS) by handling auxiliary connection(s)

Jul 29, 2009

CVE-2008-0467
HIGH

Stack-based buffer overflow in Firebird before 2.0.4, and 2.1.x before 2.1.0 RC1, might allow remote attackers to execu…

Jan 29, 2008

CVE-2008-0387
HIGH

Integer overflow in Firebird SQL 1.0.3 and earlier, 1.5.x before 1.5.6, 2.0.x before 2.0.4, and 2.1.x before 2.1.0 RC1…

Jan 29, 2008

CVE-2007-4992
HIGH

Stack-based buffer overflow in the process_packet function in fbserver.exe in Firebird SQL 2.0.2 allows remote attacker…

Oct 11, 2007

CVE-2007-5246
HIGH

Multiple stack-based buffer overflows in Firebird LI 2.0.0.12748 and 2.0.1.12855, and WI 2.0.0.12748 and 2.0.1.12855, a…

Oct 6, 2007

CVE-2007-5245
HIGH

Multiple stack-based buffer overflows in Firebird LI 1.5.3.4870 and 1.5.4.4910, and WI 1.5.3.4870 and 1.5.4.4910, allow…

Oct 6, 2007

Showing 1 to 25 of 47 CVEs