PT-2005-3449 · Oracle · Mysql Server

Reid Borsuk

·

Publicado

2005-08-16

·

Atualizado

2019-12-17

·

CVE-2005-2558

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions MySQL versions 4.0 through 4.0.24 MySQL versions 4.1 through 4.1.12 MySQL versions 5.0 through 5.0.6-beta
Description A stack-based buffer overflow issue exists in the init syms function, allowing remote authenticated users who can create user-defined functions to execute arbitrary code via a long function name field.
Recommendations For MySQL versions 4.0 through 4.0.24, update to version 4.0.25 or later. For MySQL versions 4.1 through 4.1.12, update to version 4.1.13 or later. For MySQL versions 5.0 through 5.0.6-beta, update to version 5.0.7-beta or later.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-2558
DSA-829-1
DSA-831-1
DSA-833-2

Produtos afetados

Mysql Server