CVE-2013-2492: Firebirdsql Firebird
Medium severity, CVSS 6.8. EPSS: 42.2% chance of exploitation in the next 30 days.
Stack-based buffer overflow in Firebird 2.1.3 through 2.1.5 before 18514, and 2.5.1 through 2.5.3 before 26623, on Windows allows remote attackers to execute arbitrary code via a crafted packet to TCP port 3050, related to a missing size check during extraction of a group number from CNCT information.
Affected products
- Firebirdsql Firebird: version 2.1.3 only; version 2.1.4 only; version 2.1.5 only; version 2.5.1 only; version 2.5.2 only; version 2.5.3 only
Published 2013-03-15. Last modified 2026-06-16.