Vulnerabilities > CVE-2001-1454 - Unspecified vulnerability in Oracle Mysql
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN oracle
nessus
Summary
Buffer overflow in MySQL before 3.23.33 allows remote attackers to execute arbitrary code via a long drop database request.
Vulnerable Configurations
Nessus
NASL family | Databases |
NASL id | MYSQL_3_23_33.NASL |
description | The version of MySQL installed on the remote host is affected by the following vulnerabilities : - A buffer overflow in libmysqlclient.so allows a remote attacker to execute arbitrary code via a long host parameter. (CVE-2001-1453) - A buffer overflow allows a remote attacker to execute arbitrary code via a long DROP DATABASE. (CVE-2001-1454) |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 17818 |
published | 2012-01-18 |
reporter | This script is Copyright (C) 2012-2018 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/17818 |
title | MySQL < 3.23.33 Multiple Buffer Overflows |
code |
|
References
- http://dev.mysql.com/doc/mysql/en/news-3-23-33.html
- http://dev.mysql.com/doc/mysql/en/news-3-23-33.html
- http://www.kb.cert.org/vuls/id/367320
- http://www.kb.cert.org/vuls/id/367320
- http://www.securityfocus.com/archive/1/161917
- http://www.securityfocus.com/archive/1/161917
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6419
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6419