icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons_061

Oracle MySQL < 3.23.55 Double Free() Overflow

High

Synopsis

The remote host is vulnerable to a buffer overflow.

Description

The remote host is running a version of MySQL which is older than version 3.23.55. If you have not patched this version, then any attacker with a valid username may crash this service remotely by exploiting a double free bug. Further exploitation to gain a shell on the host may also be possible.

Solution

Upgrade to MySQL 3.23.55 or higher.