Search CVE reports
91 – 100 of 150 results
CVE-2010-3680
Medium prioritySome fixes available 4 of 9
Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (mysqld daemon crash) by creating temporary tables with nullable columns while using InnoDB, which triggers an assertion failure.
4 affected packages
mysql-5.1, mysql-cluster-7.0, mysql-dfsg-5.0, mysql-dfsg-5.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mysql-5.1 | — | — | — | — | — |
mysql-cluster-7.0 | — | — | — | — | — |
mysql-dfsg-5.0 | — | — | — | — | — |
mysql-dfsg-5.1 | — | — | — | — | — |
CVE-2010-3679
Medium prioritySome fixes available 2 of 6
Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (mysqld daemon crash) via certain arguments to the BINLOG command, which triggers an access of uninitialized memory, as demonstrated by valgrind.
4 affected packages
mysql-5.1, mysql-cluster-7.0, mysql-dfsg-5.0, mysql-dfsg-5.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mysql-5.1 | — | — | — | — | — |
mysql-cluster-7.0 | — | — | — | — | — |
mysql-dfsg-5.0 | — | — | — | — | — |
mysql-dfsg-5.1 | — | — | — | — | — |
CVE-2010-3678
Medium prioritySome fixes available 2 of 6
Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (crash) via (1) IN or (2) CASE operations with NULL arguments that are explicitly specified or indirectly provided by the WITH ROLLUP modifier.
4 affected packages
mysql-5.1, mysql-cluster-7.0, mysql-dfsg-5.0, mysql-dfsg-5.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mysql-5.1 | — | — | — | — | — |
mysql-cluster-7.0 | — | — | — | — | — |
mysql-dfsg-5.0 | — | — | — | — | — |
mysql-dfsg-5.1 | — | — | — | — | — |
CVE-2010-3677
Medium prioritySome fixes available 4 of 9
Oracle MySQL 5.1 before 5.1.49 and 5.0 before 5.0.92 allows remote authenticated users to cause a denial of service (mysqld daemon crash) via a join query that uses a table with a unique SET column.
4 affected packages
mysql-5.1, mysql-cluster-7.0, mysql-dfsg-5.0, mysql-dfsg-5.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mysql-5.1 | — | — | — | — | — |
mysql-cluster-7.0 | — | — | — | — | — |
mysql-dfsg-5.0 | — | — | — | — | — |
mysql-dfsg-5.1 | — | — | — | — | — |
CVE-2010-2008
Medium prioritySome fixes available 3 of 4
MySQL before 5.1.48 allows remote authenticated users with alter database privileges to cause a denial of service (server crash and database loss) via an ALTER DATABASE command with a #mysql50# string followed by a . (dot), .....
4 affected packages
mysql-5.1, mysql-dfsg-4.1, mysql-dfsg-5.0, mysql-dfsg-5.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mysql-5.1 | — | — | — | — | — |
mysql-dfsg-4.1 | — | — | — | — | — |
mysql-dfsg-5.0 | — | — | — | — | — |
mysql-dfsg-5.1 | — | — | — | — | — |
CVE-2010-1850
Medium prioritySome fixes available 5 of 8
Buffer overflow in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote authenticated users to execute arbitrary code via a COM_FIELD_LIST command with a long table name.
3 affected packages
mysql-5.1, mysql-dfsg-5.0, mysql-dfsg-5.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mysql-5.1 | — | — | — | — | — |
mysql-dfsg-5.0 | — | — | — | — | — |
mysql-dfsg-5.1 | — | — | — | — | — |
CVE-2010-1849
Medium prioritySome fixes available 5 of 7
The my_net_skip_rest function in sql/net_serv.cc in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote attackers to cause a denial of service (CPU and bandwidth consumption) by sending a large number of packets that...
3 affected packages
mysql-5.1, mysql-dfsg-5.0, mysql-dfsg-5.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mysql-5.1 | — | — | — | — | — |
mysql-dfsg-5.0 | — | — | — | — | — |
mysql-dfsg-5.1 | — | — | — | — | — |
CVE-2010-1848
Medium prioritySome fixes available 5 of 7
Directory traversal vulnerability in MySQL 5.0 through 5.0.91 and 5.1 before 5.1.47 allows remote authenticated users to bypass intended table grants to read field definitions of arbitrary tables, and on 5.1 to read or delete...
3 affected packages
mysql-5.1, mysql-dfsg-5.0, mysql-dfsg-5.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mysql-5.1 | — | — | — | — | — |
mysql-dfsg-5.0 | — | — | — | — | — |
mysql-dfsg-5.1 | — | — | — | — | — |
CVE-2010-1626
Medium prioritySome fixes available 5 of 7
MySQL before 5.1.46 allows local users to delete the data and index files of another user's MyISAM table via a symlink attack in conjunction with the DROP TABLE command, a different vulnerability than CVE-2008-4098 and CVE-2008-7247.
3 affected packages
mysql-5.1, mysql-dfsg-5.0, mysql-dfsg-5.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mysql-5.1 | — | — | — | — | — |
mysql-dfsg-5.0 | — | — | — | — | — |
mysql-dfsg-5.1 | — | — | — | — | — |
CVE-2010-1621
Low prioritySome fixes available 2 of 3
The mysql_uninstall_plugin function in sql/sql_plugin.cc in MySQL 5.1 before 5.1.46 does not check privileges before uninstalling a plugin, which allows remote attackers to uninstall arbitrary plugins via the UNINSTALL PLUGIN command.
3 affected packages
mysql-5.1, mysql-dfsg-5.0, mysql-dfsg-5.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mysql-5.1 | — | — | — | — | — |
mysql-dfsg-5.0 | — | — | — | — | — |
mysql-dfsg-5.1 | — | — | — | — | — |