OSVDB ID: 25228

Title: MySQL Crafted COM_TABLE_DUMP Request Arbitrary Memory Disclosure

Info

Disclosure

May 02, 2006

Discovery

Unknown

Dates

Exploit

May 02, 2006

Solution

Unknown

Description

MySQL contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a malicious client sends a specially crafted invalid login or COM_TABLE_DUMP packets, which will disclose arbitrary memory in error messages resulting in a loss of confidentiality.

Classification

Location: Remote / Network Access
Attack Type: Input Manipulation
Impact: Loss of Confidentiality
Exploit: Exploit Public
Disclosure: OSVDB Verified

Solution

Upgrade to version 4.1.19, 5.0.21, 5.1.10 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.

Products

MySQL AB

MySQL

4.0.26
4.1.18
5.0.20

References

Credit

  • Stefano Di Paola - stefano.dipaolawisec.it - Minded Security


Direct URL: http://osvdb.org/36218