OSVDB ID: 9015

Title: MySQL mysqlhotcopy Insecure Temporary File Creation

Info

Disclosure

Aug 19, 2004

Discovery

Unknown

Dates

Exploit

Aug 19, 2004

Solution

Unknown

Description

mysqlhotcopy within MySQL contains a flaw that may allow a malicious user to overwrite arbitrary files. The issue is triggered when mysqlhotcopy creates insecure temporary files. It is possible that the flaw may allow a malicious user to use specially crafted symlinks to arbitrarily ovewrite files resulting in a loss of confidentiality and/or integrity.

Classification

Location: Local Access Required
Attack Type: Input Manipulation
Impact: Loss of Confidentiality, Loss of Integrity
Exploit: Exploit Public

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, Debian has released a patch to address this vulnerability.

Products

MySQL

MySQL

4.0.20
4.0.18
4.0.17
4.0.16
4.0.15x
4.0.14x
4.0.13
4.0.12
4.0.11x
4.0.10
4.0.1
4.0.0x
3.x

References

Credit

  • Jeroen van Wolffelaar - jeroenwolffelaar.nl -


Direct URL: http://osvdb.org/9015