CVE
- Id
- 6979
- CVE No.
- CVE-2003-0150
- Status
- Candidate
- Description
- MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" operator to overwrite a configuration file and cause mysql to run as root upon restart, as demonstrated by modifying my.cnf.
- Phase
- Assigned (20030318)
- Votes
- NOOP(1) Christey
- Comments
- Christey> DEBIAN:DSA-303 | URL:http://www.debian.org/security/2003/dsa-303