Summary
Detail | |||
---|---|---|---|
Vendor | Mysql | First view | 2004-11-03 |
Product | Mysql | Last view | 2017-10-27 |
Version | 6.0 | Type | |
Update | |||
Edition | |||
Language | |||
Sofware Edition | |||
Target Software | |||
Target Hardware | |||
Other |
Activity : Overall
COMMON PLATFORM ENUMERATION: Repartition per Version
Related : CVE
Date | Alert | Description | |
---|---|---|---|
7.8 | 2017-10-27 | CVE-2017-15945 | The installation scripts in the Gentoo dev-db/mysql, dev-db/mariadb, dev-db/percona-server, dev-db/mysql-cluster, and dev-db/mariadb-galera packages before 2017-09-29 have chown calls for user-writable directory trees, which allows local users to gain privileges by leveraging access to the mysql account for creation of a link. |
4.9 | 2015-04-16 | CVE-2015-2575 | Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Connector/J. |
6.8 | 2012-08-16 | CVE-2009-5026 | The executable comment feature in MySQL 5.0.x before 5.0.93 and 5.1.x before 5.1.50, when running in certain slave configurations in which the slave is running a newer version than the master, allows remote attackers to execute arbitrary SQL commands via custom comments. |
4 | 2012-01-18 | CVE-2012-0490 | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x, 5.1.x, and 5.5.x allows remote authenticated users to affect availability via unknown vectors. |
4 | 2012-01-18 | CVE-2012-0484 | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x, 5.1.x, and 5.5.x allows remote authenticated users to affect confidentiality via unknown vectors. |
3 | 2012-01-18 | CVE-2012-0114 | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x, 5.1.x, and 5.5.x allows local users to affect confidentiality and integrity via unknown vectors. |
4 | 2012-01-18 | CVE-2012-0102 | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x and 5.1.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0087 and CVE-2012-0101. |
4 | 2012-01-18 | CVE-2012-0101 | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x and 5.1.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0087 and CVE-2012-0102. |
4 | 2012-01-18 | CVE-2012-0087 | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x and 5.1.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0101 and CVE-2012-0102. |
1.7 | 2012-01-18 | CVE-2012-0075 | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x, 5.1.x, and 5.5.x allows remote authenticated users to affect integrity via unknown vectors. |
4 | 2011-01-14 | CVE-2010-3838 | MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (server crash) via a query that uses the (1) GREATEST or (2) LEAST function with a mixed list of numeric and LONGBLOB arguments, which is not properly handled when the function's result is "processed using an intermediate temporary table." |
4 | 2011-01-14 | CVE-2010-3837 | MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (server crash) via a prepared statement that uses GROUP_CONCAT with the WITH ROLLUP modifier, probably triggering a use-after-free error when a copied object is modified in a way that also affects the original object. |
4 | 2011-01-14 | CVE-2010-3836 | MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (assertion failure and server crash) via vectors related to view preparation, pre-evaluation of LIKE predicates, and IN Optimizers. |
4 | 2011-01-14 | CVE-2010-3834 | Unspecified vulnerability in MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (server crash) via vectors related to "materializing a derived table that required a temporary table for grouping" and "user variable assignments." |
5 | 2011-01-14 | CVE-2010-3833 | MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 does not properly propagate type errors, which allows remote attackers to cause a denial of service (server crash) via crafted arguments to extreme-value functions such as (1) LEAST and (2) GREATEST, related to KILL_BAD_DATA and a "CREATE TABLE ... SELECT." |
4 | 2011-01-11 | CVE-2010-3682 | Oracle MySQL 5.1 before 5.1.49 and 5.0 before 5.0.92 allows remote authenticated users to cause a denial of service (mysqld daemon crash) by using EXPLAIN with crafted "SELECT ... UNION ... ORDER BY (SELECT ... WHERE ...)" statements, which triggers a NULL pointer dereference in the Item_singlerow_subselect::store function. |
4 | 2011-01-11 | CVE-2010-3677 | Oracle MySQL 5.1 before 5.1.49 and 5.0 before 5.0.92 allows remote authenticated users to cause a denial of service (mysqld daemon crash) via a join query that uses a table with a unique SET column. |
6 | 2010-06-07 | CVE-2010-1850 | Buffer overflow in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote authenticated users to execute arbitrary code via a COM_FIELD_LIST command with a long table name. |
5 | 2010-06-07 | CVE-2010-1849 | The my_net_skip_rest function in sql/net_serv.cc in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote attackers to cause a denial of service (CPU and bandwidth consumption) by sending a large number of packets that exceed the maximum length. |
6.5 | 2010-06-07 | CVE-2010-1848 | Directory traversal vulnerability in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote authenticated users to bypass intended table grants to read field definitions of arbitrary tables, and on 5.1 to read or delete content of arbitrary tables, via a .. (dot dot) in a table name. |
3.6 | 2010-05-21 | CVE-2010-1626 | MySQL before 5.1.46 allows local users to delete the data and index files of another user's MyISAM table via a symlink attack in conjunction with the DROP TABLE command, a different vulnerability than CVE-2008-4098 and CVE-2008-7247. |
5 | 2010-05-14 | CVE-2010-1621 | The mysql_uninstall_plugin function in sql/sql_plugin.cc in MySQL 5.1 before 5.1.46 does not check privileges before uninstalling a plugin, which allows remote attackers to uninstall arbitrary plugins via the UNINSTALL PLUGIN command. |
6.8 | 2009-11-30 | CVE-2009-4028 | The vio_verify_callback function in viosslfactories.c in MySQL 5.0.x before 5.0.88 and 5.1.x before 5.1.41, when OpenSSL is used, accepts a value of zero for the depth of X.509 certificates, which allows man-in-the-middle attackers to spoof arbitrary SSL-based MySQL servers via a crafted certificate, as demonstrated by a certificate presented by a server linked against the yaSSL library. |
4 | 2009-11-30 | CVE-2009-4019 | mysqld in MySQL 5.0.x before 5.0.88 and 5.1.x before 5.1.41 does not (1) properly handle errors during execution of certain SELECT statements with subqueries, and does not (2) preserve certain null_value flags during execution of statements that use the GeomFromWKB function, which allows remote authenticated users to cause a denial of service (daemon crash) via a crafted statement. |
6 | 2009-11-30 | CVE-2008-7247 | sql/sql_table.cc in MySQL 5.0.x through 5.0.88, 5.1.x through 5.1.41, and 6.0 before 6.0.9-alpha, when the data home directory contains a symlink to a different filesystem, allows remote authenticated users to bypass intended access restrictions by calling CREATE TABLE with a (1) DATA DIRECTORY or (2) INDEX DIRECTORY argument referring to a subdirectory that requires following this symlink. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
20% (4) | CWE-399 | Resource Management Errors |
15% (3) | CWE-264 | Permissions, Privileges, and Access Controls |
15% (3) | CWE-134 | Uncontrolled Format String |
15% (3) | CWE-20 | Improper Input Validation |
10% (2) | CWE-89 | Improper Sanitization of Special Elements used in an SQL Command ('... |
10% (2) | CWE-59 | Improper Link Resolution Before File Access ('Link Following') |
5% (1) | CWE-732 | Incorrect Permission Assignment for Critical Resource |
5% (1) | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
5% (1) | CWE-22 | Improper Limitation of a Pathname to a Restricted Directory ('Path ... |
Oval Markup Language : Definitions
OvalID | Name |
---|---|
oval:org.mitre.oval:def:9827 | Format string vulnerability in time.cc in MySQL Server 4.1 before 4.1.21 and ... |
oval:org.mitre.oval:def:10468 | MySQL 4.1 before 4.1.21 and 5.0 before 5.0.24 allows a local user to access a... |
oval:org.mitre.oval:def:10729 | MySQL before 4.1.21, 5.0 before 5.0.25, and 5.1 before 5.1.12, when run on ca... |
oval:org.mitre.oval:def:10105 | MySQL before 5.0.25 and 5.1 before 5.1.12 evaluates arguments of suid routine... |
oval:org.mitre.oval:def:9530 | MySQL 5.x before 5.0.36 allows local users to cause a denial of service (data... |
oval:org.mitre.oval:def:9559 | MySQL before 4.1.23, 5.0.x before 5.0.42, and 5.1.x before 5.1.18 does not re... |
oval:org.mitre.oval:def:9166 | The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x before 5.... |
oval:org.mitre.oval:def:20366 | DSA-1413-1 mysql - multiple |
oval:org.mitre.oval:def:11390 | The convert_search_mode_to_innobase function in ha_innodb.cc in the InnoDB en... |
oval:org.mitre.oval:def:21851 | ELSA-2007:1155: mysql security update (Important) |
oval:org.mitre.oval:def:7811 | DSA-1451 mysql-dfsg-5.0 -- several vulnerabilities |
oval:org.mitre.oval:def:17905 | DSA-1451-1 mysql-dfsg-5.0 several vulnerabilities |
oval:org.mitre.oval:def:11720 | sql_select.cc in MySQL 5.0.x before 5.0.32 and 5.1.x before 5.1.14 allows rem... |
oval:org.mitre.oval:def:7917 | DSA-1608 mysql-dfsg-5.0 -- authorisation bypass |
oval:org.mitre.oval:def:18619 | DSA-1608-1 mysql-dfsg-5.0 - authorisation bypass |
oval:org.mitre.oval:def:10133 | MySQL 4.1.x before 4.1.24, 5.0.x before 5.0.60, 5.1.x before 5.1.24, and 6.0.... |
oval:org.mitre.oval:def:16963 | USN-671-1 -- mysql-dfsg-5.0 vulnerabilities |
oval:org.mitre.oval:def:10521 | MySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not pro... |
oval:org.mitre.oval:def:7544 | MySQL 6.0 and 5.1 XPath Expression DOS Vulnerability |
oval:org.mitre.oval:def:7905 | DSA-1877 mysql-dfsg-5.0 -- denial of service/execution of arbitrary code |
oval:org.mitre.oval:def:12751 | DSA-1877-1 mysql-dfsg-5.0 -- denial of service/execution of arbitrary code |
oval:org.mitre.oval:def:11857 | Multiple format string vulnerabilities in the dispatch_command function in li... |
oval:org.mitre.oval:def:22888 | ELSA-2009:1289: mysql security and bug fix update (Moderate) |
oval:org.mitre.oval:def:28888 | RHSA-2009:1289 -- mysql security and bug fix update (Moderate) |
oval:org.mitre.oval:def:8500 | MySQL 5.0 and 5.1 SELECT Statement DOS Vulnerability |
Open Source Vulnerability Database (OSVDB)
id | Description |
---|---|
78388 | Oracle MySQL Server Unspecified Remote DoS (2012-0490) |
78379 | Oracle MySQL Server Unspecified Remote DoS (2012-0102) |
78378 | Oracle MySQL Server Unspecified Remote DoS (2012-0101) |
78377 | Oracle MySQL Server Unspecified Remote DoS (2012-0087) |
78374 | Oracle MySQL Server Unspecified Remote Issue (2012-0075) |
78373 | Oracle MySQL Server Unspecified Local Issue |
78372 | Oracle MySQL Server Unspecified Remote Information Disclosure |
69395 | MySQL Derived Table Grouping DoS |
69393 | MySQL GROUP_CONCAT() WITH ROLLUP Modifier DoS |
69392 | MySQL Extreme-Value Functions Mixed Arguments DoS |
69390 | MySQL Extreme-Value Functions Argument Parsing Type Error DoS |
69387 | MySQL LIKE Predicates Pre-Evaluation DoS |
67383 | MySQL EXPLAIN Statement Item_singlerow_subselect::store Function NULL Derefer... |
67378 | MySQL Unique SET Column Join DoS |
64843 | MySQL DROP TABLE Command Symlink MyISAM Table Local Data Deletion |
64588 | MySQL Large Packet Infinite Read DoS |
64587 | MySQL COM_FIELD_LIST Command Packet Table Name Argument Overflow |
64586 | MySQL COM_FIELD_LIST Command Packet Authentication Bypass |
63903 | MySQL sql/sql_plugin.cc mysql_uninstall_plugin Function UNINSTALL PLUGIN Comm... |
60664 | MySQL sql/sql_table.cc Data Home Directory Symlink CREATE TABLE Access Restri... |
60489 | MySQL GeomFromWKB() Function First Argument Geometry Value Handling DoS |
60488 | MySQL SELECT Statement WHERE Clause Sub-query DoS |
60487 | MySQL vio_verify_callback() Function Crafted Certificate MiTM Weakness |
55734 | MySQL sql_parse.cc dispatch_command() Function Format String DoS |
52453 | MySQL sql/item_xmlfunc.cc ExtractValue() / UpdateXML() Functions Scalar XPath... |
OpenVAS Exploits
id | Description |
---|---|
2012-07-30 | Name : CentOS Update for mysql CESA-2012:0105 centos6 File : nvt/gb_CESA-2012_0105_mysql_centos6.nasl |
2012-07-30 | Name : CentOS Update for mysql CESA-2012:0127 centos5 File : nvt/gb_CESA-2012_0127_mysql_centos5.nasl |
2012-07-09 | Name : RedHat Update for mysql RHSA-2012:0105-01 File : nvt/gb_RHSA-2012_0105-01_mysql.nasl |
2012-06-05 | Name : RedHat Update for mysql RHSA-2011:0164-01 File : nvt/gb_RHSA-2011_0164-01_mysql.nasl |
2012-04-30 | Name : Debian Security Advisory DSA 2429-1 (mysql-5.1) File : nvt/deb_2429_1.nasl |
2012-04-02 | Name : Fedora Update for mysql FEDORA-2012-0972 File : nvt/gb_fedora_2012_0972_mysql_fc16.nasl |
2012-03-16 | Name : Ubuntu Update for mysql-5.1 USN-1397-1 File : nvt/gb_ubuntu_USN_1397_1.nasl |
2012-02-21 | Name : RedHat Update for mysql RHSA-2012:0127-01 File : nvt/gb_RHSA-2012_0127-01_mysql.nasl |
2012-02-13 | Name : Fedora Update for mysql FEDORA-2012-0987 File : nvt/gb_fedora_2012_0987_mysql_fc15.nasl |
2012-02-12 | Name : Gentoo Security Advisory GLSA 201201-02 (MySQL) File : nvt/glsa_201201_02.nasl |
2011-09-07 | Name : Mac OS X v10.6.4 Multiple Vulnerabilities (2010-007) File : nvt/gb_macosx_su10-007.nasl |
2011-08-19 | Name : Mac OS X v10.6.8 Multiple Vulnerabilities (2011-004) File : nvt/secpod_macosx_su11-004.nasl |
2011-08-09 | Name : CentOS Update for mysql CESA-2009:1289 centos5 i386 File : nvt/gb_CESA-2009_1289_mysql_centos5_i386.nasl |
2011-08-09 | Name : CentOS Update for mysql CESA-2010:0109 centos5 i386 File : nvt/gb_CESA-2010_0109_mysql_centos5_i386.nasl |
2011-08-09 | Name : CentOS Update for mysql CESA-2010:0442 centos5 i386 File : nvt/gb_CESA-2010_0442_mysql_centos5_i386.nasl |
2011-01-21 | Name : Mandriva Update for mysql MDVSA-2011:012 (mysql) File : nvt/gb_mandriva_MDVSA_2011_012.nasl |
2011-01-21 | Name : MySQL Multiple Denial of Service Vulnerabilities File : nvt/gb_mysql_mult_dos_vuln_jan11.nasl |
2011-01-18 | Name : MySQL Mysqld Multiple Denial Of Service Vulnerabilities File : nvt/gb_mysql_mysqld_mult_dos_vuln.nasl |
2010-12-02 | Name : Fedora Update for mysql FEDORA-2010-15147 File : nvt/gb_fedora_2010_15147_mysql_fc14.nasl |
2010-11-16 | Name : CentOS Update for mysql CESA-2010:0824 centos4 i386 File : nvt/gb_CESA-2010_0824_mysql_centos4_i386.nasl |
2010-11-16 | Name : RedHat Update for mysql RHSA-2010:0824-01 File : nvt/gb_RHSA-2010_0824-01_mysql.nasl |
2010-11-16 | Name : RedHat Update for mysql RHSA-2010:0825-01 File : nvt/gb_RHSA-2010_0825-01_mysql.nasl |
2010-11-16 | Name : Mandriva Update for mysql MDVSA-2010:155-1 (mysql) File : nvt/gb_mandriva_MDVSA_2010_155_1.nasl |
2010-11-16 | Name : Mandriva Update for mysql MDVSA-2010:222 (mysql) File : nvt/gb_mandriva_MDVSA_2010_222.nasl |
2010-11-16 | Name : Mandriva Update for mysql MDVSA-2010:223 (mysql) File : nvt/gb_mandriva_MDVSA_2010_223.nasl |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Date_Format denial of service attempt RuleID : 8057 - Type : SERVER-MYSQL - Revision : 11 |
2014-01-10 | Database SELECT subquery denial of service attempt RuleID : 20053 - Type : SERVER-MYSQL - Revision : 7 |
2014-01-10 | Database unique set column denial of service attempt RuleID : 19094 - Type : SERVER-MYSQL - Revision : 12 |
2014-01-10 | Database unique set column denial of service attempt RuleID : 19093 - Type : SERVER-MYSQL - Revision : 12 |
2014-01-10 | mysql_log COM_DROP_DB format string vulnerability exploit attempt RuleID : 16708 - Type : SERVER-MYSQL - Revision : 8 |
2014-01-10 | mysql_log COM_CREATE_DB format string vulnerability exploit attempt RuleID : 16707 - Type : SERVER-MYSQL - Revision : 8 |
2014-01-10 | Database COM_FIELD_LIST Buffer Overflow attempt RuleID : 16703 - Type : SERVER-MYSQL - Revision : 10 |
2014-01-10 | database Procedure Analyse denial of service attempt - 2 RuleID : 16349 - Type : SERVER-MYSQL - Revision : 7 |
2014-01-10 | database PROCEDURE ANALYSE denial of service attempt - 1 RuleID : 16348 - Type : SERVER-MYSQL - Revision : 7 |
2014-01-10 | XML Functions UpdateXML Scalar XPath denial of service attempt RuleID : 15443 - Type : SERVER-MYSQL - Revision : 10 |
2014-01-10 | XML Functions ExtractValue Scalar XPath denial of service attempt RuleID : 15442 - Type : SERVER-MYSQL - Revision : 7 |
Nessus® Vulnerability Scanner
id | Description |
---|---|
2017-11-13 | Name: The remote Gentoo host is missing one or more security-related patches. File: gentoo_GLSA-201711-04.nasl - Type: ACT_GATHER_INFO |
2016-09-15 | Name: The remote openSUSE host is missing a security update. File: openSUSE-2016-1082.nasl - Type: ACT_GATHER_INFO |
2016-07-19 | Name: The remote Debian host is missing a security-related update. File: debian_DSA-3621.nasl - Type: ACT_GATHER_INFO |
2016-06-27 | Name: The remote Debian host is missing a security update. File: debian_DLA-526.nasl - Type: ACT_GATHER_INFO |
2015-06-01 | Name: The remote openSUSE host is missing a security update. File: openSUSE-2015-389.nasl - Type: ACT_GATHER_INFO |
2015-01-19 | Name: The remote Solaris system is missing a security patch for third-party software. File: solaris11_mysql_20130924.nasl - Type: ACT_GATHER_INFO |
2014-10-10 | Name: The remote device is missing a vendor-supplied security patch. File: f5_bigip_SOL14410.nasl - Type: ACT_GATHER_INFO |
2014-10-10 | Name: The remote device is missing a vendor-supplied security patch. File: f5_bigip_SOL8178.nasl - Type: ACT_GATHER_INFO |
2014-06-13 | Name: The remote openSUSE host is missing a security update. File: openSUSE-2012-273.nasl - Type: ACT_GATHER_INFO |
2014-06-13 | Name: The remote openSUSE host is missing a security update. File: openSUSE-2012-274.nasl - Type: ACT_GATHER_INFO |
2014-06-13 | Name: The remote openSUSE host is missing a security update. File: openSUSE-2012-276.nasl - Type: ACT_GATHER_INFO |
2014-06-13 | Name: The remote openSUSE host is missing a security update. File: suse_11_3_libmariadbclient16-110701.nasl - Type: ACT_GATHER_INFO |
2014-06-13 | Name: The remote openSUSE host is missing a security update. File: suse_11_3_libmysqlclient-devel-110607.nasl - Type: ACT_GATHER_INFO |
2014-06-13 | Name: The remote openSUSE host is missing a security update. File: suse_11_3_libmysqlclusterclient16-110706.nasl - Type: ACT_GATHER_INFO |
2014-06-13 | Name: The remote openSUSE host is missing a security update. File: suse_11_4_libmariadbclient16-110701.nasl - Type: ACT_GATHER_INFO |
2014-06-13 | Name: The remote openSUSE host is missing a security update. File: suse_11_4_libmysqlclient-devel-110607.nasl - Type: ACT_GATHER_INFO |
2014-06-13 | Name: The remote openSUSE host is missing a security update. File: suse_11_4_libmysqlclusterclient16-110706.nasl - Type: ACT_GATHER_INFO |
2013-09-04 | Name: The remote Amazon Linux AMI host is missing a security update. File: ala_ALAS-2012-44.nasl - Type: ACT_GATHER_INFO |
2013-08-30 | Name: The remote Gentoo host is missing one or more security-related patches. File: gentoo_GLSA-201308-06.nasl - Type: ACT_GATHER_INFO |
2013-07-12 | Name: The remote Oracle Linux host is missing one or more security updates. File: oraclelinux_ELSA-2007-0152.nasl - Type: ACT_GATHER_INFO |
2013-07-12 | Name: The remote Oracle Linux host is missing one or more security updates. File: oraclelinux_ELSA-2007-1155.nasl - Type: ACT_GATHER_INFO |
2013-07-12 | Name: The remote Oracle Linux host is missing one or more security updates. File: oraclelinux_ELSA-2010-0109.nasl - Type: ACT_GATHER_INFO |
2013-07-12 | Name: The remote Oracle Linux host is missing one or more security updates. File: oraclelinux_ELSA-2010-0110.nasl - Type: ACT_GATHER_INFO |
2013-07-12 | Name: The remote Oracle Linux host is missing one or more security updates. File: oraclelinux_ELSA-2010-0442.nasl - Type: ACT_GATHER_INFO |
2013-07-12 | Name: The remote Oracle Linux host is missing one or more security updates. File: oraclelinux_ELSA-2010-0824.nasl - Type: ACT_GATHER_INFO |