remember to upgrade to firebird 2.0.4 or firebird2.1
Stack-based buffer overflow in Firebird before 2.0.4, and 2.1.x before 2.1.0 RC1, might allow remote attackers to execute arbitrary code via a long username.
Stack-based buffer overflow in Firebird before 2.0.4, and 2.1.x before 2.1.0 RC1, might allow remote attackers to execute arbitrary code via a long username.
The papers and pictures are at the bottom of this page
Here is the Firebird 2.1 package for Slackware Linux
We have a firebird (the opensource SQL database) package in the
server:database buildservice project
(https://build.opensuse.org/package/show?package=firebird&project=server%3Adatabase).
Unfortunately, this package isn’t maintained since some time, which is a
pity, because the server:database repository is offered as a community
repository in YaST and is advertised as the “Latest updates for database
software including Firebird and MySQL”.
I have a 32 bit application that uses DAO to connect to an Access database. I need to upgrade the application to be true 64 bit (not WOW64). Microsoft does not offer a 64 bit version of DAO.
Thread continues here
http://discuss.joelonsoftware.com/default.asp?design.4.631361
The security bug is now fixed in debian experimental
and here is the changelog
There is an grave security bug in firebird package 2.0 from debian and ubuntu
where an user can connect to the server with SYSDBA and NO password
The bug is now fixed in debian sid (unstable)
http://packages.debian.org/sid/firebird2.0-super
and here is the changelog
firebird2.0-super.init: stop exporting ISC_USER and ISC_PASSWORD.
Fixes a hole causing remote connections as user SYSDBA to succeed
without giving a password.
Closes: #481389 and CVE-2008-1880
This link is for firebird nomination
This link is for flamerobin nomination
Last year Firebird was double winner of SourceForget Community Awards!
Do you know which open source feature is the most important? Do you know which open source database rocks and which one sucks? Is MySQL better than Postgres? Is Ingres worth considering? How does Firebird compare? Have you used, or have you considered using, an open source database?
Take a survey. It’s only 15 questions so it takes just a few minutes.
I’ll post a link where you can get the results once they have been compiled and prepared.
If you try to connect with Real Basic here is the How To