{"id":"SUSE-SU-2026:1868-1","summary":"Security update for firebird","details":"This update for firebird fixes the following issues\n\n- CVE-2025-65104: Information leak vulnerability in firebird3 client when used with newer (\u003e= 4) server (bsc#1262330).\n- CVE-2026-27890: Pre-Auth DOS (bsc#1262328).\n- CVE-2026-28212: One packet DoS (bsc#1262329).\n- CVE-2026-28214: Server hangs when using specific clumplet on batch creation (bsc#1262327).\n- CVE-2026-28224: CryptCallback DOS (bsc#1262326).\n- CVE-2026-33337: Buffer overflow on parsing corrupted slice packet (bsc#1262325).\n- CVE-2026-34232: DoS via `op_response` packet from client (bsc#1262324).\n- CVE-2026-35215: DoS via malicious slice descriptor in slice packet (bsc#1262322).\n- CVE-2026-40342: Path traversal when declaring external routine (bsc#1262320).\n","modified":"2026-05-16T08:19:16.128641Z","published":"2026-05-15T07:50:00Z","related":["CVE-2025-65104","CVE-2026-27890","CVE-2026-28212","CVE-2026-28214","CVE-2026-28224","CVE-2026-33337","CVE-2026-34232","CVE-2026-35215","CVE-2026-40342"],"upstream":["CVE-2025-65104","CVE-2026-27890","CVE-2026-28212","CVE-2026-28214","CVE-2026-28224","CVE-2026-33337","CVE-2026-34232","CVE-2026-35215","CVE-2026-40342"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2026/suse-su-20261868-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262320"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262322"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262324"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262325"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262326"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262327"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262328"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262329"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262330"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-65104"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-27890"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-28212"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-28214"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-28224"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-33337"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-34232"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-35215"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-40342"}],"schema_version":"1.7.5"}