CVE
- Id
- 11915
- CVE No.
- CVE-2005-0709
- Status
- Candidate
- Description
- MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to execute arbitrary code by using CREATE FUNCTION to access libc calls, as demonstrated by using strcat, on_exit, and exit.
- Phase
- Assigned (20050311)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
85369 | 11915 | CVE-2005-0709 | BUGTRAQ:20050310 Mysql CREATE FUNCTION libc arbitrary code execution. | View |
85370 | 11915 | CVE-2005-0709 | URL:http://marc.info/?l=bugtraq&m=111066115808506&w=2 | View |
85371 | 11915 | CVE-2005-0709 | VULNWATCH:20050310 Mysql CREATE FUNCTION libc arbitrary code execution. | View |
85372 | 11915 | CVE-2005-0709 | URL:http://archives.neohapsis.com/archives/vulnwatch/2005-q1/0084.html | View |
85373 | 11915 | CVE-2005-0709 | APPLE:APPLE-SA-2005-08-15 | View |
85374 | 11915 | CVE-2005-0709 | URL:http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html | View |
85375 | 11915 | CVE-2005-0709 | APPLE:APPLE-SA-2005-08-17 | View |
85376 | 11915 | CVE-2005-0709 | URL:http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html | View |
85377 | 11915 | CVE-2005-0709 | DEBIAN:DSA-707 | View |
85378 | 11915 | CVE-2005-0709 | URL:http://www.debian.org/security/2005/dsa-707 | View |
85379 | 11915 | CVE-2005-0709 | GENTOO:GLSA-200503-19 | View |
85380 | 11915 | CVE-2005-0709 | URL:http://www.gentoo.org/security/en/glsa/glsa-200503-19.xml | View |
85381 | 11915 | CVE-2005-0709 | MANDRAKE:MDKSA-2005:060 | View |
85382 | 11915 | CVE-2005-0709 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2005:060 | View |
85383 | 11915 | CVE-2005-0709 | REDHAT:RHSA-2005:334 | View |
85384 | 11915 | CVE-2005-0709 | URL:http://www.redhat.com/support/errata/RHSA-2005-334.html | View |
85385 | 11915 | CVE-2005-0709 | REDHAT:RHSA-2005:348 | View |
85386 | 11915 | CVE-2005-0709 | URL:http://www.redhat.com/support/errata/RHSA-2005-348.html | View |
85387 | 11915 | CVE-2005-0709 | SUNALERT:101864 | View |
85388 | 11915 | CVE-2005-0709 | URL:http://sunsolve.sun.com/search/document.do?assetkey=1-26-101864-1 | View |
85389 | 11915 | CVE-2005-0709 | SUSE:SUSE-SA:2005:019 | View |
85390 | 11915 | CVE-2005-0709 | URL:http://www.novell.com/linux/security/advisories/2005_19_mysql.html | View |
85391 | 11915 | CVE-2005-0709 | TRUSTIX:2005-0009 | View |
85392 | 11915 | CVE-2005-0709 | URL:http://www.trustix.org/errata/2005/0009/ | View |
85393 | 11915 | CVE-2005-0709 | UBUNTU:USN-96-1 | View |
85394 | 11915 | CVE-2005-0709 | URL:http://www.ubuntulinux.org/support/documentation/usn/usn-96-1 | View |
85395 | 11915 | CVE-2005-0709 | BID:12781 | View |
85396 | 11915 | CVE-2005-0709 | URL:http://www.securityfocus.com/bid/12781 | View |
85397 | 11915 | CVE-2005-0709 | OVAL:oval:org.mitre.oval:def:10479 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
61979 | JVNDB-2005-000181 | MySQL の CREATE TEMPORARY TABLE ステートメントにおけるシンボリックリンク攻撃を受ける脆弱性 | ------------ | CVE-2005-0711 | 11915 | 2.1 | http://jvndb.jvn.jp/ja/contents/2005/JVNDB-2005-000181.html | View |