Search CVE reports


Toggle filters

131 – 140 of 150 results


CVE-2006-4227

Medium priority
Fixed

MySQL before 5.0.25 and 5.1 before 5.1.12 evaluates arguments of suid routines in the security context of the routine's definer instead of the routine's caller, which allows remote authenticated users to gain privileges through a...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2006-4226

Medium priority
Fixed

MySQL before 4.1.21, 5.0 before 5.0.25, and 5.1 before 5.1.12, when run on case-sensitive filesystems, allows remote authenticated users to create or access a database when the database name differs only in case from a database...

2 affected packages

mysql-dfsg, mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg
mysql-dfsg-5.0
Show less packages

CVE-2006-4031

Medium priority
Fixed

MySQL 4.1 before 4.1.21 and 5.0 before 5.0.24 allows a local user to access a table through a previously created MERGE table, even after the user's privileges are revoked for the original table, which might violate...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2006-3486

Medium priority
Fixed

Off-by-one buffer overflow in the Instance_options::complete_initialization function in instance_options.cc in the Instance Manager in MySQL before 5.0.23 and 5.1 before 5.1.12 might allow local users to cause a denial of service...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2006-3469

Medium priority
Fixed

Format string vulnerability in time.cc in MySQL Server 4.1 before 4.1.21 and 5.0 before 1 April 2006 allows remote authenticated users to cause a denial of service (crash) via a format string instead of a date as the first...

2 affected packages

mysql-dfsg, mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg
mysql-dfsg-5.0
Show less packages

CVE-2006-3081

Medium priority
Fixed

mysqld in MySQL 4.1.x before 4.1.18, 5.0.x before 5.0.19, and 5.1.x before 5.1.6 allows remote authorized users to cause a denial of service (crash) via a NULL second argument to the str_to_date function.

2 affected packages

mysql-dfsg, mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg
mysql-dfsg-5.0
Show less packages

CVE-2006-2753

Medium priority
Fixed

SQL injection vulnerability in MySQL 4.1.x before 4.1.20 and 5.0.x before 5.0.22 allows context-dependent attackers to execute arbitrary SQL commands via crafted multibyte encodings in character sets such as SJIS, BIG5, and GBK,...

3 affected packages

exim4, mysql-dfsg, mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exim4
mysql-dfsg
mysql-dfsg-5.0
Show less packages

CVE-2006-1518

Medium priority
Fixed

Buffer overflow in the open_table function in sql_base.cc in MySQL 5.0.x up to 5.0.20 might allow remote attackers to execute arbitrary code via crafted COM_TABLE_DUMP packets with invalid length values.

3 affected packages

mysql-dfsg, mysql-dfsg-4.1, mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg
mysql-dfsg-4.1
mysql-dfsg-5.0
Show less packages

CVE-2006-1517

Medium priority
Fixed

sql_parse.cc in MySQL 4.0.x up to 4.0.26, 4.1.x up to 4.1.18, and 5.0.x up to 5.0.20 allows remote attackers to obtain sensitive information via a COM_TABLE_DUMP request with an incorrect packet length, which includes portions of...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2006-1516

Medium priority
Fixed

The check_connection function in sql_parse.cc in MySQL 4.0.x up to 4.0.26, 4.1.x up to 4.1.18, and 5.0.x up to 5.0.20 allows remote attackers to read portions of memory via a username without a trailing null byte, which causes a...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages