CVE-2006-1516

Publication date 5 May 2006

Last updated 24 July 2024


Ubuntu priority

The check_connection function in sql_parse.cc in MySQL 4.0.x up to 4.0.26, 4.1.x up to 4.1.18, and 5.0.x up to 5.0.20 allows remote attackers to read portions of memory via a username without a trailing null byte, which causes a buffer over-read.

Status

Package Ubuntu Release Status
mysql-dfsg-5.0 7.04 feisty
Fixed 5.0.38-0ubuntu1
6.10 edgy
Fixed 5.0.24a-9ubuntu0.1
6.06 LTS dapper
Fixed 5.0.22-0ubuntu6.06.3

References

Related Ubuntu Security Notices (USN)

Other references