PT-2005-3449 · Oracle · Mysql Server
Reid Borsuk
·
Published
2005-08-16
·
Updated
2019-12-17
·
CVE-2005-2558
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
MySQL versions 4.0 through 4.0.24
MySQL versions 4.1 through 4.1.12
MySQL versions 5.0 through 5.0.6-beta
Description
A stack-based buffer overflow issue exists in the init syms function, allowing remote authenticated users who can create user-defined functions to execute arbitrary code via a long
function name field.Recommendations
For MySQL versions 4.0 through 4.0.24, update to version 4.0.25 or later.
For MySQL versions 4.1 through 4.1.12, update to version 4.1.13 or later.
For MySQL versions 5.0 through 5.0.6-beta, update to version 5.0.7-beta or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mysql Server