PT-2005-3449 · Oracle · Mysql Server

Reid Borsuk

·

Published

2005-08-16

·

Updated

2019-12-17

·

CVE-2005-2558

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions MySQL versions 4.0 through 4.0.24 MySQL versions 4.1 through 4.1.12 MySQL versions 5.0 through 5.0.6-beta
Description A stack-based buffer overflow issue exists in the init syms function, allowing remote authenticated users who can create user-defined functions to execute arbitrary code via a long function name field.
Recommendations For MySQL versions 4.0 through 4.0.24, update to version 4.0.25 or later. For MySQL versions 4.1 through 4.1.12, update to version 4.1.13 or later. For MySQL versions 5.0 through 5.0.6-beta, update to version 5.0.7-beta or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-2558
DSA-829-1
DSA-831-1
DSA-833-2

Affected Products

Mysql Server