Search CVE reports


Toggle filters

121 – 130 of 150 results


CVE-2007-3782

Low priority
Fixed

MySQL Community Server before 5.0.45 allows remote authenticated users to gain update privileges for a table in another database via a view that refers to this external table.

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2007-3781

Low priority
Fixed

MySQL Community Server before 5.0.45 does not require privileges such as SELECT for the source table in a CREATE TABLE LIKE statement, which allows remote authenticated users to obtain sensitive information such as the table structure.

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2007-3780

Low priority
Fixed

MySQL Community Server before 5.0.45 allows remote attackers to cause a denial of service (daemon crash) via a malformed password packet in the connection protocol.

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2007-2693

Medium priority
Not affected

MySQL before 5.1.18 allows remote authenticated users without SELECT privileges to obtain sensitive information from partitioned tables via an ALTER TABLE statement.

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2007-2692

Medium priority
Fixed

The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x before 5.1.18 does not restore THD::db_access privileges when returning from SQL SECURITY INVOKER stored routines, which allows remote authenticated users to gain...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2007-2691

Medium priority
Fixed

MySQL before 4.1.23, 5.0.x before 5.0.42, and 5.1.x before 5.1.18 does not require the DROP privilege for RENAME TABLE statements, which allows remote authenticated users to rename arbitrary tables.

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2007-2583

Low priority
Fixed

The in_decimal::set function in item_cmpfunc.cc in MySQL before 5.0.40, and 5.1 before 5.1.18-beta, allows context-dependent attackers to cause a denial of service (crash) via a crafted IF clause that results in a divide-by-zero...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2007-1420

Medium priority
Fixed

MySQL 5.x before 5.0.36 allows local users to cause a denial of service (database crash) by performing information_schema table subselects and using ORDER BY to sort a single-row result, which prevents certain structure elements...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2006-7232

Medium priority
Fixed

sql_select.cc in MySQL 5.0.x before 5.0.32 and 5.1.x before 5.1.14 allows remote authenticated users to cause a denial of service (crash) via an EXPLAIN SELECT FROM on the INFORMATION_SCHEMA table, as originally demonstrated using...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2006-4380

Medium priority
Not affected

MySQL before 4.1.13 allows local users to cause a denial of service (persistent replication slave crash) via a query with multiupdate and subselects.

2 affected packages

mysql-dfsg, mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg
mysql-dfsg-5.0
Show less packages