OESA-2022-1516
Dashboard / Vulnerabilities / OESA-2022-1516
Summary: freetds security update
Details: FreeTDS is an open source implementation of the TDS (Tabular Data Stream) protocol used by these databases for their own clients. It supports many different flavors of the protocol and three APIs to access it. FreeTDS includes call level interfaces for DB-Lib, CT-Lib, and ODBC. Security Fix(es): FreeTDS through 1.1.11 has a Buffer Overflow.(CVE-2019-13508)
References: https://www.openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2022-1516, https://nvd.nist.gov/vuln/detail/CVE-2019-13508
Affected packages
Package
Name: freetds
Purl: pkg:rpm/openEuler/freetds&distro=openEuler-20.03-LTS-SP1
Affected ranges
Type: ECOSYSTEM
Events:
Introduced- 0
Fixed -1.00.38-8.oe1
Affected versions
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
