Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.100657
Category:Databases
Title:MySQL < 5.1.47 Multiple Vulnerabilities
Summary:MySQL < 5.1.47 is prone to multiple vulnerabilities.
Description:Summary:
MySQL < 5.1.47 is prone to multiple vulnerabilities.

Vulnerability Impact:
1. A remote denial-of-service vulnerability.

Attackers can exploit this issue to cause the application to end up in
a locked server state, denying service to legitimate users.

2. A security-bypass vulnerability.

An attacker can exploit this issue to bypass certain security
restrictions and to read and delete content from the affected
database. Other attacks may also be possible.

Affected Software/OS:
Versions prior to MySQL 5.1.47 are vulnerable.

Solution:
Updates are available. Please see the references for more information.

CVSS Score:
6.5

CVSS Vector:
AV:N/AC:L/Au:S/C:P/I:P/A:P

Cross-Ref: BugTraq ID: 40100
BugTraq ID: 40109
Common Vulnerability Exposure (CVE) ID: CVE-2010-1849
http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html
http://www.mandriva.com/security/advisories?name=MDVSA-2010:107
http://lists.mysql.com/commits/106060
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7328
http://securitytracker.com/id?1024032
SuSE Security Announcement: SUSE-SR:2010:019 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2010-10/msg00006.html
SuSE Security Announcement: SUSE-SR:2010:021 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2010-11/msg00005.html
http://www.ubuntu.com/usn/USN-1397-1
Common Vulnerability Exposure (CVE) ID: CVE-2010-1848
http://lists.mysql.com/commits/107532
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10258
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7210
http://www.redhat.com/support/errata/RHSA-2010-0442.html
http://www.redhat.com/support/errata/RHSA-2010-0824.html
http://securitytracker.com/id?1024031
CopyrightThis script is Copyright (C) 2010 Greenbone Networks GmbH

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2024 E-Soft Inc. All rights reserved.