Описание
libmysqlclient client library in MySQL 3.x to 3.23.54, and 4.x to 4.0.6, does not properly verify length fields for certain responses in the (1) read_rows or (2) read_one_row routines, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.
libmysqlclient client library in MySQL 3.x to 3.23.54, and 4.x to 4.0.6, does not properly verify length fields for certain responses in the (1) read_rows or (2) read_one_row routines, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2002-1376
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10849
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10850
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000555
- http://marc.info/?l=bugtraq&m=103971644013961&w=2
- http://marc.info/?l=bugtraq&m=104004857201968&w=2
- http://marc.info/?l=bugtraq&m=104005886114500&w=2
- http://marc.info/?l=bugtraq&m=104033188706000&w=2
- http://security.e-matters.de/advisories/042002.html
- http://www.debian.org/security/2002/dsa-212
- http://www.linuxsecurity.com/advisories/engarde_advisory-2660.html
- http://www.mandriva.com/security/advisories?name=MDKSA-2002:087
- http://www.redhat.com/support/errata/RHSA-2002-288.html
- http://www.securityfocus.com/bid/6370
- http://www.securityfocus.com/bid/6374
EPSS
CVE ID
Связанные уязвимости
libmysqlclient client library in MySQL 3.x to 3.23.54, and 4.x to 4.0.6, does not properly verify length fields for certain responses in the (1) read_rows or (2) read_one_row routines, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.
libmysqlclient client library in MySQL 3.x to 3.23.54, and 4.x to 4.0.6, does not properly verify length fields for certain responses in the (1) read_rows or (2) read_one_row routines, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.
libmysqlclient client library in MySQL 3.x to 3.23.54, and 4.x to 4.0. ...
EPSS