CVE
- Id
- 58854
- CVE No.
- CVE-2012-5611
- Status
- Candidate
- Description
- Stack-based buffer overflow in the acl_get function in Oracle MySQL 5.5.19 and other versions through 5.5.28, and 5.1.53 and other versions through 5.1.66, and MariaDB 5.5.2.x before 5.5.28a, 5.3.x before 5.3.11, 5.2.x before 5.2.13 and 5.1.x before 5.1.66, allows remote authenticated users to execute arbitrary code via a long argument to the GRANT FILE command.
- Phase
- Assigned (20121024)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
601907 | 58854 | CVE-2012-5611 | EXPLOIT-DB:23075 | View |
601908 | 58854 | CVE-2012-5611 | URL:http://www.exploit-db.com/exploits/23075 | View |
601909 | 58854 | CVE-2012-5611 | FULLDISC:20121201 MySQL (Linux) Stack based buffer overrun PoC Zeroday | View |
601910 | 58854 | CVE-2012-5611 | URL:http://seclists.org/fulldisclosure/2012/Dec/4 | View |
601911 | 58854 | CVE-2012-5611 | MLIST:[oss-security] 20121202 Re: Re: [Full-disclosure] MySQL (Linux) Stack based buffer overrun PoC Zeroday | View |
601912 | 58854 | CVE-2012-5611 | URL:http://www.openwall.com/lists/oss-security/2012/12/02/3 | View |
601913 | 58854 | CVE-2012-5611 | MLIST:[oss-security] 20121202 Re: Re: [Full-disclosure] MySQL (Linux) Stack based buffer overrun PoC Zeroday | View |
601914 | 58854 | CVE-2012-5611 | URL:http://www.openwall.com/lists/oss-security/2012/12/02/4 | View |
601915 | 58854 | CVE-2012-5611 | CONFIRM:http://www.oracle.com/technetwork/topics/security/cpujan2013-1515902.html | View |
601916 | 58854 | CVE-2012-5611 | CONFIRM:https://kb.askmonty.org/en/mariadb-5166-release-notes/ | View |
601917 | 58854 | CVE-2012-5611 | CONFIRM:https://kb.askmonty.org/en/mariadb-5213-release-notes/ | View |
601918 | 58854 | CVE-2012-5611 | CONFIRM:https://kb.askmonty.org/en/mariadb-5311-release-notes/ | View |
601919 | 58854 | CVE-2012-5611 | CONFIRM:https://kb.askmonty.org/en/mariadb-5528a-release-notes/ | View |
601920 | 58854 | CVE-2012-5611 | DEBIAN:DSA-2581 | View |
601921 | 58854 | CVE-2012-5611 | URL:http://www.debian.org/security/2012/dsa-2581 | View |
601922 | 58854 | CVE-2012-5611 | GENTOO:GLSA-201308-06 | View |
601923 | 58854 | CVE-2012-5611 | URL:http://security.gentoo.org/glsa/glsa-201308-06.xml | View |
601924 | 58854 | CVE-2012-5611 | MANDRIVA:MDVSA-2013:150 | View |
601925 | 58854 | CVE-2012-5611 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2013:150 | View |
601926 | 58854 | CVE-2012-5611 | MANDRIVA:MDVSA-2013:102 | View |
601927 | 58854 | CVE-2012-5611 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2013:102 | View |
601928 | 58854 | CVE-2012-5611 | REDHAT:RHSA-2012:1551 | View |
601929 | 58854 | CVE-2012-5611 | URL:http://rhn.redhat.com/errata/RHSA-2012-1551.html | View |
601930 | 58854 | CVE-2012-5611 | REDHAT:RHSA-2013:0180 | View |
601931 | 58854 | CVE-2012-5611 | URL:http://rhn.redhat.com/errata/RHSA-2013-0180.html | View |
601932 | 58854 | CVE-2012-5611 | SUSE:openSUSE-SU-2013:0013 | View |
601933 | 58854 | CVE-2012-5611 | URL:http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00001.html | View |
601934 | 58854 | CVE-2012-5611 | SUSE:openSUSE-SU-2013:0011 | View |
601935 | 58854 | CVE-2012-5611 | URL:http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00000.html | View |
601936 | 58854 | CVE-2012-5611 | SUSE:openSUSE-SU-2013:0014 | View |
601937 | 58854 | CVE-2012-5611 | URL:http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00002.html | View |
601938 | 58854 | CVE-2012-5611 | SUSE:openSUSE-SU-2013:0135 | View |
601939 | 58854 | CVE-2012-5611 | URL:http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00013.html | View |
601940 | 58854 | CVE-2012-5611 | SUSE:openSUSE-SU-2013:0156 | View |
601941 | 58854 | CVE-2012-5611 | URL:http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00020.html | View |
601942 | 58854 | CVE-2012-5611 | SUSE:SUSE-SU-2013:0262 | View |
601943 | 58854 | CVE-2012-5611 | URL:http://lists.opensuse.org/opensuse-security-announce/2013-02/msg00000.html | View |
601944 | 58854 | CVE-2012-5611 | SUSE:openSUSE-SU-2013:1412 | View |
601945 | 58854 | CVE-2012-5611 | URL:http://lists.opensuse.org/opensuse-updates/2013-09/msg00010.html | View |
601946 | 58854 | CVE-2012-5611 | UBUNTU:USN-1658-1 | View |
601947 | 58854 | CVE-2012-5611 | URL:http://www.ubuntu.com/usn/USN-1658-1 | View |
601948 | 58854 | CVE-2012-5611 | UBUNTU:USN-1703-1 | View |
601949 | 58854 | CVE-2012-5611 | URL:http://www.ubuntu.com/usn/USN-1703-1 | View |
601950 | 58854 | CVE-2012-5611 | OVAL:oval:org.mitre.oval:def:16395 | View |
601951 | 58854 | CVE-2012-5611 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:16395 | View |
601952 | 58854 | CVE-2012-5611 | SECUNIA:51443 | View |
601953 | 58854 | CVE-2012-5611 | URL:http://secunia.com/advisories/51443 | View |
601954 | 58854 | CVE-2012-5611 | SECUNIA:53372 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
19660 | JVNDB-2013-001235 | Apache CloudStack および Citrix CloudPlatform における重要な情報を取得される脆弱性 | Apache CloudStack および Citrix CloudPlatform は、重要な情報を log4j.conf ログファイルに保存するため、下記の重要な情報を取得される脆弱性が存在します。 | CVE-2012-5616 | 58854 | 1.5 | http://jvndb.jvn.jp/ja/contents/2013/JVNDB-2013-001235.html | View |