PT-2002-2288 · Oracle · Mysql Server

Published

2002-12-23

·

Updated

2019-10-07

·

CVE-2002-1373

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions MySQL versions 3.23.x through 3.23.53
Description A signed integer issue in the COM TABLE DUMP package allows remote attackers to cause a denial of service, resulting in a crash or hang of the mysqld process. This occurs when large negative integers are provided to a memcpy call.
Recommendations For MySQL versions 3.23.x through 3.23.53, update to version 3.23.54 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-1373
DSA-212

Affected Products

Mysql Server