FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2006-1518

This CVE name corresponds to:

Entered Topic
2006-06-01 MySQL -- Information Disclosure and Buffer Overflow Vulnerabilities
2006-05-06 mysql50-server -- COM_TABLE_DUMP arbitrary code execution

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2006-1518
Phase Assigned(20060330)

Description

Buffer overflow in the open_table function in sql_base.cc in MySQL 5.0.x up to 5.0.20 might allow remote attackers to execute arbitrary code via crafted COM_TABLE_DUMP packets with invalid length values.

References

Source Reference
BUGTRAQ 20060502 MySQL COM_TABLE_DUMP Information Leakage and Arbitrary commandexecution.
MISC http://www.wisec.it/vulns.php?page=8
CONFIRM http://dev.mysql.com/doc/refman/5.0/en/news-5-0-21.html
CONFIRM http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=365939
DEBIAN DSA-1071
DEBIAN DSA-1073
DEBIAN DSA-1079
SUSE SUSE-SR:2006:012
SUSE SUSE-SA:2006:036
CERT-VN VU#602457
BID 17780
VUPEN ADV-2006-1633
SECTRACK 1016016
SECUNIA 19929
SECUNIA 20241
SECUNIA 20253
SECUNIA 20333
SECUNIA 20457
SECUNIA 20762
SREASON 839
XF mysql-comtabledump-bo(26232)