Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2003-0780
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2003-0780

Description:
Buffer overflow in get_salt_from_password from sql_acl.cc for MySQL 4.0.14 and earlier, and 3.23.x, allows attackers with ALTER TABLE privileges to execute arbitrary code via a long Password field.

CVE Status:
Candidate

References:

TRUSTIX
  http://marc.theaimsgroup.com/?l=bugtraq&m=106381424420775&w=2

SAID
  Secunia Advisory: SA9709

REDHAT
  http://www.redhat.com/support/errata/RHSA-2003-281.html
  http://www.redhat.com/support/errata/RHSA-2003-282.html

MANDRAKE
  http://www.mandrakesoft.com/security/advisories?name=MDKSA-2003:094

FULLDISC
  http://lists.grok.org.uk/pipermail/full-disclosure/2003-September/009819.html

ENGARDE

DEBIAN
  http://www.debian.org/security/2003/dsa-381

CONECTIVA
  http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000743

CERT-VN
  516492

BUGTRAQ
  http://marc.theaimsgroup.com/?l=bugtraq&m=106364207129993&w=2
  http://www.securityfocus.com/archive/1/337012


Return to the previous page.