CVE-2005-0709
medium · 4.6MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to execute arbitrary code by using CREATE FUNCTION to access libc calls, as demonstrated by using strcat, on_exit, and exit.
4.6
CVSS
18.4%
EPSS (exploit prob.)
97th
EPSS percentile
2005-05-02
Published
AV:L/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
CWE-94
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| mysql | mysql | 4.1.0 |
| mysql | mysql | 4.1.3 |
| mysql | mysql | 4.1.10 |
| oracle | mysql | 3.23.49 |
| oracle | mysql | 4.0.0 |
| oracle | mysql | 4.0.1 |
| oracle | mysql | 4.0.2 |
| oracle | mysql | 4.0.3 |
| oracle | mysql | 4.0.4 |
| oracle | mysql | 4.0.5 |
| oracle | mysql | 4.0.5a |
| oracle | mysql | 4.0.6 |
| oracle | mysql | 4.0.7 |
| oracle | mysql | 4.0.7 |
| oracle | mysql | 4.0.8 |
| oracle | mysql | 4.0.8 |
| oracle | mysql | 4.0.9 |
| oracle | mysql | 4.0.9 |
| oracle | mysql | 4.0.10 |
| oracle | mysql | 4.0.11 |
| oracle | mysql | 4.0.11 |
| oracle | mysql | 4.0.12 |
| oracle | mysql | 4.0.13 |
| oracle | mysql | 4.0.14 |
| oracle | mysql | 4.0.15 |
| oracle | mysql | 4.0.18 |
| oracle | mysql | 4.0.20 |
| oracle | mysql | 4.0.21 |
| oracle | mysql | 4.0.23 |
| oracle | mysql | 4.1.0 |
| oracle | mysql | 4.1.2 |
| oracle | mysql | 4.1.3 |
| oracle | mysql | 4.1.4 |
| oracle | mysql | 4.1.5 |
Check a specific version with /api/v1/cve/match.
References
- http://archives.neohapsis.com/archives/vulnwatch/2005-q1/0084.html
- http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html
- http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html
- http://marc.info/?l=bugtraq&m=111066115808506&w=2
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-101864-1
- http://www.debian.org/security/2005/dsa-707
- http://www.gentoo.org/security/en/glsa/glsa-200503-19.xml
- http://www.mandriva.com/security/advisories?name=MDKSA-2005:060
- http://www.novell.com/linux/security/advisories/2005_19_mysql.html
- http://www.redhat.com/support/errata/RHSA-2005-334.html
- http://www.redhat.com/support/errata/RHSA-2005-348.html
- http://www.securityfocus.com/bid/12781
- http://www.trustix.org/errata/2005/0009/
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10479
- https://usn.ubuntu.com/96-1/
- http://archives.neohapsis.com/archives/vulnwatch/2005-q1/0084.html
- http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html
- http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html
- http://marc.info/?l=bugtraq&m=111066115808506&w=2
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-101864-1
- http://www.debian.org/security/2005/dsa-707
- http://www.gentoo.org/security/en/glsa/glsa-200503-19.xml
- http://www.mandriva.com/security/advisories?name=MDKSA-2005:060
- http://www.novell.com/linux/security/advisories/2005_19_mysql.html
- http://www.redhat.com/support/errata/RHSA-2005-334.html
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2005-0709