PT-2004-1899 · Oracle · Mysql Server

Dean Ellis

·

Published

2004-10-16

·

Updated

2019-12-17

·

CVE-2004-0837

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: MySQL versions 3.x through 3.23.48 MySQL versions 4.x through 4.0.20
Description: The issue allows attackers to cause a denial of service, resulting in a crash or hang, by utilizing multiple threads that simultaneously alter MERGE table UNIONs.
Recommendations: For MySQL versions 3.x through 3.23.48, update to version 3.23.49 or later. For MySQL versions 4.x through 4.0.20, update to version 4.0.21 or later.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0837
DSA-562-2

Affected Products

Mysql Server