- EPSS 4.55%
- Veröffentlicht 11.01.2011 20:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (mysqld daemon crash) via certain arguments to the BINLOG command, which triggers an access of uninitialized memory, as demonstrated by valgrind.
- EPSS 6.05%
- Veröffentlicht 11.01.2011 20:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (crash) via (1) IN or (2) CASE operations with NULL arguments that are explicitly specified or indirectly provided by the WITH ROLLUP modifier.
- EPSS 1.56%
- Veröffentlicht 11.01.2011 20:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Oracle MySQL 5.1 before 5.1.49 and 5.0 before 5.0.92 allows remote authenticated users to cause a denial of service (mysqld daemon crash) via a join query that uses a table with a unique SET column.
- EPSS 3.07%
- Veröffentlicht 11.01.2011 20:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
storage/innobase/dict/dict0crea.c in mysqld in Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (assertion failure) by modifying the (1) innodb_file_format or (2) innodb_file_per_table configuration parame...
CVE-2010-1848
- EPSS 0.13%
- Veröffentlicht 08.06.2010 00:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Directory traversal vulnerability in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote authenticated users to bypass intended table grants to read field definitions of arbitrary tables, and on 5.1 to read or delete content of arbitrary tab...
- EPSS 34.72%
- Veröffentlicht 08.06.2010 00:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote authenticated users to execute arbitrary code via a COM_FIELD_LIST command with a long table name.
- EPSS 2.4%
- Veröffentlicht 08.06.2010 00:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The my_net_skip_rest function in sql/net_serv.cc in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote attackers to cause a denial of service (CPU and bandwidth consumption) by sending a large number of packets that exceed the maximum lengt...
CVE-2010-1626
- EPSS 0.08%
- Veröffentlicht 21.05.2010 17:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
MySQL before 5.1.46 allows local users to delete the data and index files of another user's MyISAM table via a symlink attack in conjunction with the DROP TABLE command, a different vulnerability than CVE-2008-4098 and CVE-2008-7247.
- EPSS 0.43%
- Veröffentlicht 14.05.2010 19:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The mysql_uninstall_plugin function in sql/sql_plugin.cc in MySQL 5.1 before 5.1.46 does not check privileges before uninstalling a plugin, which allows remote attackers to uninstall arbitrary plugins via the UNINSTALL PLUGIN command.
CVE-2009-4030
- EPSS 0.04%
- Veröffentlicht 30.11.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
MySQL 5.1.x before 5.1.41 allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM table with modified (1) DATA DIRECTORY or (2) INDEX DIRECTORY arguments that are originally associated with pathnames without symlinks...