TROYANOSYVIRUS
Back to CVEs

CVE-2009-3691

N/A

Description

Multiple integer overflows in setnet32.exe 3.50.0.13752 in IBM Informix Client SDK 3.0 and 3.50 and Informix Connect Runtime 3.x allow remote attackers to execute arbitrary code via a .nfx file with a crafted (1) HostSize, and possibly (2) ProtoSize and (3) ServerSize, field that triggers a stack-based buffer overflow involving a crafted HostList field. NOTE: some of these details are obtained from third party information.

CVE Details

CVSS v3.1 ScoreN/A
Published10/13/2009
Last Modified4/23/2026
Sourcenvd
Honeypot Sightings0

Affected Products

ibm:informix_client_sdkibm:informix_connect_runtime

Weaknesses (CWE)

CWE-189

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.