CVE-2007-1420

MySQL 5.x before 5.0.36 allows local users to cause a denial of service (database crash) by performing information_schema table subselects and using ORDER BY to sort a single-row result, which prevents certain structure elements from being initialized and triggers a NULL dereference in the filesort function.
References
Link Resource
http://bugs.mysql.com/bug.php?id=24630
http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-36.html Vendor Advisory
http://secunia.com/advisories/24483 Vendor Advisory
http://secunia.com/advisories/24609 Vendor Advisory
http://secunia.com/advisories/25196 Vendor Advisory
http://secunia.com/advisories/25389 Vendor Advisory
http://secunia.com/advisories/25946 Vendor Advisory
http://secunia.com/advisories/30351 Vendor Advisory
http://security.gentoo.org/glsa/glsa-200705-11.xml
http://securityreason.com/securityalert/2413
http://www.mandriva.com/security/advisories?name=MDKSA-2007:139
http://www.redhat.com/support/errata/RHSA-2008-0364.html Vendor Advisory
http://www.sec-consult.com/284.html Exploit
http://www.securityfocus.com/archive/1/462339/100/0/threaded
http://www.securityfocus.com/bid/22900 Exploit Patch
http://www.securitytracker.com/id?1017746
http://www.ubuntu.com/usn/usn-440-1
http://www.vupen.com/english/advisories/2007/0908 Vendor Advisory
https://issues.rpath.com/browse/RPL-1127
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9530
http://bugs.mysql.com/bug.php?id=24630
http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-36.html Vendor Advisory
http://secunia.com/advisories/24483 Vendor Advisory
http://secunia.com/advisories/24609 Vendor Advisory
http://secunia.com/advisories/25196 Vendor Advisory
http://secunia.com/advisories/25389 Vendor Advisory
http://secunia.com/advisories/25946 Vendor Advisory
http://secunia.com/advisories/30351 Vendor Advisory
http://security.gentoo.org/glsa/glsa-200705-11.xml
http://securityreason.com/securityalert/2413
http://www.mandriva.com/security/advisories?name=MDKSA-2007:139
http://www.redhat.com/support/errata/RHSA-2008-0364.html Vendor Advisory
http://www.sec-consult.com/284.html Exploit
http://www.securityfocus.com/archive/1/462339/100/0/threaded
http://www.securityfocus.com/bid/22900 Exploit Patch
http://www.securitytracker.com/id?1017746
http://www.ubuntu.com/usn/usn-440-1
http://www.vupen.com/english/advisories/2007/0908 Vendor Advisory
https://issues.rpath.com/browse/RPL-1127
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9530
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mysql:mysql:*:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.3:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.4:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.5:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.10:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.15:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.16:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.17:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.20:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.24:*:*:*:*:*:*:*
cpe:2.3:a:mysql:mysql:5.0.30:*:*:*:*:*:*:*
cpe:2.3:a:oracle:mysql:5.0.6:*:*:*:*:*:*:*
cpe:2.3:a:oracle:mysql:5.0.7:*:*:*:*:*:*:*
cpe:2.3:a:oracle:mysql:5.0.32:*:*:*:*:*:*:*
cpe:2.3:a:oracle:mysql:5.0.41:*:*:*:*:*:*:*

History

21 Nov 2024, 00:28

Type Values Removed Values Added
References () http://bugs.mysql.com/bug.php?id=24630 - () http://bugs.mysql.com/bug.php?id=24630 -
References () http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-36.html - Vendor Advisory () http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-36.html - Vendor Advisory
References () http://secunia.com/advisories/24483 - Vendor Advisory () http://secunia.com/advisories/24483 - Vendor Advisory
References () http://secunia.com/advisories/24609 - Vendor Advisory () http://secunia.com/advisories/24609 - Vendor Advisory
References () http://secunia.com/advisories/25196 - Vendor Advisory () http://secunia.com/advisories/25196 - Vendor Advisory
References () http://secunia.com/advisories/25389 - Vendor Advisory () http://secunia.com/advisories/25389 - Vendor Advisory
References () http://secunia.com/advisories/25946 - Vendor Advisory () http://secunia.com/advisories/25946 - Vendor Advisory
References () http://secunia.com/advisories/30351 - Vendor Advisory () http://secunia.com/advisories/30351 - Vendor Advisory
References () http://security.gentoo.org/glsa/glsa-200705-11.xml - () http://security.gentoo.org/glsa/glsa-200705-11.xml -
References () http://securityreason.com/securityalert/2413 - () http://securityreason.com/securityalert/2413 -
References () http://www.mandriva.com/security/advisories?name=MDKSA-2007:139 - () http://www.mandriva.com/security/advisories?name=MDKSA-2007:139 -
References () http://www.redhat.com/support/errata/RHSA-2008-0364.html - Vendor Advisory () http://www.redhat.com/support/errata/RHSA-2008-0364.html - Vendor Advisory
References () http://www.sec-consult.com/284.html - Exploit () http://www.sec-consult.com/284.html - Exploit
References () http://www.securityfocus.com/archive/1/462339/100/0/threaded - () http://www.securityfocus.com/archive/1/462339/100/0/threaded -
References () http://www.securityfocus.com/bid/22900 - Exploit, Patch () http://www.securityfocus.com/bid/22900 - Exploit, Patch
References () http://www.securitytracker.com/id?1017746 - () http://www.securitytracker.com/id?1017746 -
References () http://www.ubuntu.com/usn/usn-440-1 - () http://www.ubuntu.com/usn/usn-440-1 -
References () http://www.vupen.com/english/advisories/2007/0908 - Vendor Advisory () http://www.vupen.com/english/advisories/2007/0908 - Vendor Advisory
References () https://issues.rpath.com/browse/RPL-1127 - () https://issues.rpath.com/browse/RPL-1127 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9530 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9530 -

Information

Published : 2007-03-12 23:19

Updated : 2024-11-21 00:28


NVD link : CVE-2007-1420

Mitre link : CVE-2007-1420

CVE.ORG link : CVE-2007-1420


JSON object : View

Products Affected

mysql

  • mysql

oracle

  • mysql