Oracle MySQL Remote Overflow and Information Disclosure Vulnerabilities

Medium Nessus Network Monitor Plugin ID 3527

Synopsis

The remote host is vulnerable to a buffer overflow.

Description

According to its version number, the installation of MySQL on the remote host may be prone to multiple buffer overflows. The MySQL server is also vulnerable to multiple information disclosure flaws. An attacker exploiting the overflow would need to be able to authenticate to the MySQL server. An attacker exploiting the information disclosure flaw would only need to be able to send malformed 'login' packets to the server. This version of MySQL is also prone to a remote Denial of Service (DoS) due to an inability to properly parse a malformed call to the date_format function.

Solution

Upgrade to version 4.0.27 / 4.1.19 / 5.0.27 / 5.1.10 or higher.

See Also

http://www.securityfocus.com/archive/1/[email protected]

Plugin Details

Severity: Medium

ID: 3527

File Name: 3527.prm

Family: Database

Published: 2004/08/18

Modified: 2016/01/22

Dependencies: 8914, 8915

Risk Information

Risk Factor: Medium

CVSSv2

Base Score: 5.5

Temporal Score: 4.5

Vector: CVSS2#AV:A/AC:L/Au:S/C:N/I:N/A:C

Temporal Vector: CVSS2#E:F/RL:OF/RC:C

CVSSv3

Base Score: 6.5

Temporal Score: 6

Vector: CVSS3#AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Temporal Vector: CVSS3#E:F/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:mysql:mysql

Reference Information

CVE: CVE-2006-3469, CVE-2006-1517, CVE-2006-1518, CVE-2006-3081, CVE-2006-0903, CVE-2006-1516

BID: 16850, 18439, 19032, 17780