CVE-2005-0441
https://notcve.org/view.php?id=CVE-2005-0441
Multiple stack-based buffer overflows in Sybase Adaptive Server Enterprise (ASE) 12.x before 12.5.3 ESD#1 allow remote authenticated users to execute arbitrary code via the (1) attrib_valid function, (2) covert function, (3) declare statement, or (4) a crafted query plan, or remote authenticated users with database owner or "sa" role privileges to execute arbitrary code via (5) a crafted install java statement. • http://archives.neohapsis.com/archives/bugtraq/2004-12/0315.html http://marc.info/?l=bugtraq&m=111272918117194&w=2 http://secunia.com/advisories/13632 http://www.ngssoftware.com/advisories/sybase-ase.txt http://www.securityfocus.com/archive/1/393851 http://www.securityfocus.com/bid/12080 http://www.sybase.com/detail/1%2C6904%2C1033894%2C00.html http://www.sybase.com/detail?id=1034520 http://www.sybase.com/detail?id=1034752 https://exchange.xforce.ibmcloud.com/vulnerabilities •
CVE-2003-0327
https://notcve.org/view.php?id=CVE-2003-0327
Sybase Adaptive Server Enterprise (ASE) 12.5 allows remote attackers to cause a denial of service (hang) via a remote password array with an invalid length, which triggers a heap-based buffer overflow. Sybase Adaptive Serve Enterprise (ASE) 12.5 permite a atacantes remotos causar una denegación de servicio (cuelgue) mediante una contraseña remota con una longitud inválida, lo que dispara un desbordamiento de búfer en el montón. • http://marc.info/?l=bugtraq&m=106936096103805&w=2 http://www.rapid7.com/advisories/R7-0016.html https://exchange.xforce.ibmcloud.com/vulnerabilities/13800 •