Описание
MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, uses predictable file names when creating temporary tables, which allows local users with CREATE TEMPORARY TABLE privileges to overwrite arbitrary files via a symlink attack.
Релиз | Статус | Примечание |
---|---|---|
dapper | released | 4.0.24-10ubuntu2 |
devel | DNE | |
edgy | released | 4.0.24-10ubuntu2 |
feisty | DNE | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
dapper | released | 4.1.15-1ubuntu5 |
devel | DNE | |
edgy | released | 4.1.15-1ubuntu5 |
feisty | DNE | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
dapper | released | 5.0.22-0ubuntu6.06.3 |
devel | released | 5.0.38-0ubuntu1 |
edgy | released | 5.0.24a-9ubuntu0.1 |
feisty | released | 5.0.38-0ubuntu1 |
upstream | needs-triage |
Показывать по
EPSS
2.1 Low
CVSS2
Связанные уязвимости
MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, uses predictable file names when creating temporary tables, which allows local users with CREATE TEMPORARY TABLE privileges to overwrite arbitrary files via a symlink attack.
MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, uses predictable file names when creating temporary tables, which allows local users with CREATE TEMPORARY TABLE privileges to overwrite arbitrary files via a symlink attack.
MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, uses predictable fil ...
MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, uses predictable file names when creating temporary tables, which allows local users with CREATE TEMPORARY TABLE privileges to overwrite arbitrary files via a symlink attack.
EPSS
2.1 Low
CVSS2