Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-3835

Опубликовано: 26 июл. 2010
Источник: redhat
CVSS2: 4
EPSS Низкий

Описание

MySQL 5.1 before 5.1.51 and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (mysqld server crash) by performing a user-variable assignment in a logical expression that is calculated and stored in a temporary table for GROUP BY, then causing the expression value to be used after the table is created, which causes the expression to be re-evaluated instead of accessing its value from the table.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 3mysqlNot affected
Red Hat Enterprise Linux 4mysqlNot affected
Red Hat Enterprise Linux 5mysqlFixedRHSA-2010:082503.11.2010
Red Hat Enterprise Linux 6mysqlFixedRHSA-2011:016418.01.2011

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=640819MySQL: crash with user variables, assignments, joins... (MySQL Bug #55564)

EPSS

Процентиль: 78%
0.01238
Низкий

4 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 14 лет назад

MySQL 5.1 before 5.1.51 and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (mysqld server crash) by performing a user-variable assignment in a logical expression that is calculated and stored in a temporary table for GROUP BY, then causing the expression value to be used after the table is created, which causes the expression to be re-evaluated instead of accessing its value from the table.

nvd
больше 14 лет назад

MySQL 5.1 before 5.1.51 and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (mysqld server crash) by performing a user-variable assignment in a logical expression that is calculated and stored in a temporary table for GROUP BY, then causing the expression value to be used after the table is created, which causes the expression to be re-evaluated instead of accessing its value from the table.

debian
больше 14 лет назад

MySQL 5.1 before 5.1.51 and 5.5 before 5.5.6 allows remote authenticat ...

github
около 3 лет назад

MySQL 5.1 before 5.1.51 and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (mysqld server crash) by performing a user-variable assignment in a logical expression that is calculated and stored in a temporary table for GROUP BY, then causing the expression value to be used after the table is created, which causes the expression to be re-evaluated instead of accessing its value from the table.

oracle-oval
больше 14 лет назад

ELSA-2010-0825: mysql security update (MODERATE)

EPSS

Процентиль: 78%
0.01238
Низкий

4 Medium

CVSS2