APP: IBM Informix Dynamic Server oninit.exe EXPLAIN Stack Buffer Overflow
This signature detects attempts to exploit a known stack buffer overflow in IBM Informix Dynamic Server Database. It is caused by insufficient checks within a logging function of the oninit.exe process. Remote authenticated attackers can exploit this by sending a crafted SET EXPLAIN command to the target server. A successful attack requires credentials to remotely connect to a vulnerable database server. An attacker can overflow the stack buffer allowing execution of arbitrary code with the privileges of the affected service. An unsuccessful attemp can result in a denial of service for the database.
Extended Description
IBM Informix is prone to a stack-based buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data. Successfully exploiting this issue may allow an attacker to execute arbitrary code with SYSTEM-level privileges, completely compromising affected computers. Failed exploit attempts will result in a denial-of-service condition.
Affected Products
Ibm informix_ids
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Ibm
9.0