Vulnerabilities > CVE-2001-1453 - Unspecified vulnerability in Oracle Mysql 3.23.32
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Buffer overflow in libmysqlclient.so in MySQL 3.23.33 and earlier allows remote attackers to execute arbitrary code via a long host parameter. Upgrade to the latest version of MySQL (3.23.33 or later) for fix.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Databases |
NASL id | MYSQL_3_23_33.NASL |
description | The version of MySQL installed on the remote host is affected by the following vulnerabilities : - A buffer overflow in libmysqlclient.so allows a remote attacker to execute arbitrary code via a long host parameter. (CVE-2001-1453) - A buffer overflow allows a remote attacker to execute arbitrary code via a long DROP DATABASE. (CVE-2001-1454) |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 17818 |
published | 2012-01-18 |
reporter | This script is Copyright (C) 2012-2018 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/17818 |
title | MySQL < 3.23.33 Multiple Buffer Overflows |
code |
|