CVE-2008-3963
Vulnerability Summary
Timeline
Description
MySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not properly handle a b'' (b single-quote single-quote) token, aka an empty bit-string literal, which allows remote attackers to cause a denial of service (daemon crash) by using this token in a SQL statement.
CVSS Metrics
- v2.0•MEDIUM•Score: 4AV:N/AC:L/Au:S/C:N/I:N/A:P
EPSS Trends
Current EPSS score: 5.42%• Percentile: 90%
Techniques & Countermeasures
- CWE-134•Use of Externally-Controlled Format String
The product uses a function that accepts a format string as an argument, but the format string originates from an external source.
Affected Systems
- mysql•mysql
5.0.0 | 5.0.1 | 5.0.2 | 5.0.3 | 5.0.4 | 5.0.5 | 5.0.5.0.21 | 5.0.10 | 5.0.15 | 5.0.16 | 5.0.17 | 5.0.20 | 5.0.22.1.0.1 | 5.0.24 | 5.0.30 | 5.0.36 | 5.0.44 | 5.0.54 | 5.0.56 | 5.0.60 | 5.1.5 | 5.1.23
- oracle•mysql
5.0.0:alpha | 5.0.6 | 5.0.23 | 5.0.25 | 5.0.26 | 5.0.30:sp1 | 5.0.32 | 5.0.33 | 5.0.38 | 5.0.41 | 5.0.42 | 5.0.45 | 5.0.50 | 5.0.51 | 5.0.52 | 5.1 | 5.1.1 | 5.1.2 | 5.1.3 | 5.1.4 | 5.1.6 | 5.1.7 | 5.1.8 | 5.1.9 | 5.1.10 | 5.1.11 | 5.1.12 | 5.1.13 | 5.1.14 | 5.1.15 | 5.1.16 | 5.1.17 | 5.1.18 | 5.1.19 | 5.1.20 | 5.1.21 | 5.1.22 | 6.0.0 | 6.0.1 | 6.0.2 | 6.0.3 | 6.0.4
References (23)
- http://bugs.mysql.com/bug.php?id=35658
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:094
- http://dev.mysql.com/doc/refman/5.1/en/news-5-1-26.html
- http://www.ubuntu.com/usn/USN-1397-1
- http://www.redhat.com/support/errata/RHSA-2009-1067.html
- http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-66.html
- http://dev.mysql.com/doc/refman/6.0/en/news-6-0-6.html
- http://www.openwall.com/lists/oss-security/2008/09/09/7
- http://www.vupen.com/english/advisories/2008/2554
- http://www.ubuntu.com/usn/USN-671-1
- https://bugs.gentoo.org/237166
- https://exchange.xforce.ibmcloud.com/vulnerabilities/45042
- http://www.debian.org/security/2009/dsa-1783
- http://www.redhat.com/support/errata/RHSA-2009-1289.html
- http://secunia.com/advisories/32769
- http://secunia.com/advisories/32759
- http://secunia.com/advisories/34907
- http://www.openwall.com/lists/oss-security/2008/09/09/4
- http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00001.html
- http://secunia.com/advisories/36566
- http://secunia.com/advisories/31769
- http://www.securitytracker.com/id?1020858
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10521