CVE-2017-11757
https://notcve.org/view.php?id=CVE-2017-11757
Heap-based buffer overflow in Actian Pervasive PSQL v12.10 and Zen v13 allows remote attackers to execute arbitrary code via crafted traffic to TCP port 1583. The overflow occurs after Server-Client encryption-key exchange. The issue results from an integer underflow that leads to a zero-byte allocation. The _srvLnaConnectMP1 function is affected. El desbordamiento de búfer en la región heap de la memoria en Actian Pervasive PSQL versión 12.10 y Zen versión 13 permite a los atacantes remotos ejecutar código arbitrario por medio de un tráfico creado hacia el puerto TCP 1583. • http://supportservices.actian.com/support-services/security-center#announcements https://blogs.securiteam.com/index.php/archives/2924 https://twitter.com/SecuriTeam_SSD/status/815567538318954496 • CWE-191: Integer Underflow (Wrap or Wraparound) •