MDVSA-2009:159 -- Mandriva mysqlID: oval:org.secpod.oval:def:301209 | Date: (C)2012-01-07 (M)2023-12-07 |
Class: PATCH | Family: unix |
A vulnerability has been found and corrected in mysql: Multiple format string vulnerabilities in the dispatch_command function in libmysqld/sql_parse.cc in mysqld in MySQL 4.0.0 through 5.0.83 allow remote authenticated users to cause a denial of service and possibly have unspecified other impact via format string specifiers in a database name in a COM_CREATE_DB or COM_DROP_DB request. NOTE: some of these details are obtained from third party information . This update provides fixes for this vulnerability.
Platform: |
Mandriva Linux 2009.0 |
Mandriva Linux 2008.1 |