4

CVE-2010-3835

MySQL 5.1 before 5.1.51 and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (mysqld server crash) by performing a user-variable assignment in a logical expression that is calculated and stored in a temporary table for GROUP BY, then causing the expression value to be used after the table is created, which causes the expression to be re-evaluated instead of accessing its value from the table.

Data is provided by the National Vulnerability Database (NVD)
MysqlMysql Version5.1.5
MysqlMysql Version5.1.23
MysqlMysql Version5.1.31
MysqlMysql Version5.1.32
MysqlMysql Version5.1.34
MysqlMysql Version5.1.37
OracleMysql Version5.1
OracleMysql Version5.1.1
OracleMysql Version5.1.2
OracleMysql Version5.1.3
OracleMysql Version5.1.4
OracleMysql Version5.1.6
OracleMysql Version5.1.7
OracleMysql Version5.1.8
OracleMysql Version5.1.9
OracleMysql Version5.1.10
OracleMysql Version5.1.11
OracleMysql Version5.1.12
OracleMysql Version5.1.13
OracleMysql Version5.1.14
OracleMysql Version5.1.15
OracleMysql Version5.1.16
OracleMysql Version5.1.17
OracleMysql Version5.1.18
OracleMysql Version5.1.19
OracleMysql Version5.1.20
OracleMysql Version5.1.21
OracleMysql Version5.1.22
OracleMysql Version5.1.23 Updatea
OracleMysql Version5.1.24
OracleMysql Version5.1.25
OracleMysql Version5.1.26
OracleMysql Version5.1.27
OracleMysql Version5.1.28
OracleMysql Version5.1.29
OracleMysql Version5.1.30
OracleMysql Version5.1.31 Updatesp1
OracleMysql Version5.1.33
OracleMysql Version5.1.34 Updatesp1
OracleMysql Version5.1.35
OracleMysql Version5.1.36
OracleMysql Version5.1.37 Updatesp1
OracleMysql Version5.1.38
OracleMysql Version5.1.39
OracleMysql Version5.1.40
OracleMysql Version5.1.40 Updatesp1
OracleMysql Version5.1.41
OracleMysql Version5.1.42
OracleMysql Version5.1.43
OracleMysql Version5.1.43 Updatesp1
OracleMysql Version5.1.44
OracleMysql Version5.1.45
OracleMysql Version5.1.46
OracleMysql Version5.1.46 Updatesp1
OracleMysql Version5.1.47
OracleMysql Version5.1.48
OracleMysql Version5.1.49
OracleMysql Version5.1.49 Updatesp1
OracleMysql Version5.1.50
OracleMysql Version5.5.0
OracleMysql Version5.5.1
OracleMysql Version5.5.2
OracleMysql Version5.5.3
OracleMysql Version5.5.4
OracleMysql Version5.5.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.24% 0.786
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:N/I:N/A:P