CVE-2007-3336 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 9% (pctl 95)
Patch early
A public exploit exists.
Description
Multiple "pointer overwrite" vulnerabilities in Ingres database server 2006 9.0.4, r3, 2.6, and 2.5, as used in multiple CA (formerly Computer Associates) products, allow remote attackers to execute arbitrary code by sending certain TCP data at different times to the Ingres Communications Server Process (iigcc), which calls the (1) QUinsert or (2) QUremove functions with attacker-controlled input.
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 8.96% — more likely to be exploited than 95% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2007-06-22 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| ingres | database server |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | CA Advantage Ingres 2.6 - Multiple Buffer Overflow Vulnerabilities (PoC) | 2010-08-14 |
References
- http://archives.neohapsis.com/archives/bugtraq/2007-06/0302.html
- http://osvdb.org/37486
- http://secunia.com/advisories/25756
- http://secunia.com/advisories/25775
- http://supportconnectw.ca.com/public/ca_common_docs/ingresvuln_letter.asp
- http://www.ca.com/us/securityadvisor/newsinfo/collateral.aspx?cid=145778
- http://www.ngssoftware.com/advisories/critical-risk-vulnerability-in-ingres-pointer-overwrite-1/
- http://www.ngssoftware.com/advisories/critical-risk-vulnerability-in-ingres-pointer-overwrite-2/
- http://www.securityfocus.com/archive/1/472193/100/0/threaded
- http://www.securityfocus.com/bid/24585
- http://www.vupen.com/english/advisories/2007/2288
- http://www.vupen.com/english/advisories/2007/2290
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34993
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35000
- http://archives.neohapsis.com/archives/bugtraq/2007-06/0302.html
- http://osvdb.org/37486
- http://secunia.com/advisories/25756
- http://secunia.com/advisories/25775
- http://supportconnectw.ca.com/public/ca_common_docs/ingresvuln_letter.asp
- http://www.ca.com/us/securityadvisor/newsinfo/collateral.aspx?cid=145778
→ the Explorer · watch your stack · NVD