MySQL User-Defined Function init_syms() Overflow

medium Log Correlation Engine Plugin ID 801121
New! Plugin Severity Now Using CVSS v3

The calculated severity for Plugins has been updated to use CVSS v3 by default. Plugins that do not have a CVSS v3 score will fall back to CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Synopsis

The remote host is vulnerable to a buffer overflow.

Description

According to its version number, the installation of MySQL on the remote host may be prone to a buffer overflow when copying the name of a user-defined function into a stack-based buffer. With sufficient access to create a user-defined function, an attacker may be able to exploit this and execute arbitrary code within the context of the affected database server process.

Solution

Upgrade to version 4.0.25 / 4.1.13 / 5.0.7-beta or higher.

See Also

http://.appsecinc.com/resources/alerts/mysql/2005-002.html

Plugin Details

Severity: Medium

ID: 801121

Family: Database

Nessus ID: 19416

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 4.3

Temporal Score: 3.2

Vector: CVSS2#AV:L/AC:L/Au:S/C:P/I:P/A:P

Temporal Vector: CVSS2#E:U/RL:OF/RC:C

Reference Information

CVE: CVE-2005-2558

BID: 14509