CVE-2012-2102
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
17/08/2012
Last modified:
17/12/2019
Description
MySQL 5.1.x before 5.1.62 and 5.5.x before 5.5.22 allows remote authenticated users to cause a denial of service (assertion failure and mysqld abort) by deleting a record and using HANDLER READ NEXT.
Impact
Base Score 2.0
3.50
Severity 2.0
LOW
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:mysql:mysql:5.1.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:mysql:mysql:5.1.23:*:*:*:*:*:*:* | ||
cpe:2.3:a:mysql:mysql:5.1.31:*:*:*:*:*:*:* | ||
cpe:2.3:a:mysql:mysql:5.1.32:*:*:*:*:*:*:* | ||
cpe:2.3:a:mysql:mysql:5.1.34:*:*:*:*:*:*:* | ||
cpe:2.3:a:mysql:mysql:5.1.37:*:*:*:*:*:*:* | ||
cpe:2.3:a:oracle:mysql:5.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:oracle:mysql:5.1.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:oracle:mysql:5.1.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:oracle:mysql:5.1.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:oracle:mysql:5.1.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:oracle:mysql:5.1.6:*:*:*:*:*:*:* | ||
cpe:2.3:a:oracle:mysql:5.1.7:*:*:*:*:*:*:* | ||
cpe:2.3:a:oracle:mysql:5.1.8:*:*:*:*:*:*:* | ||
cpe:2.3:a:oracle:mysql:5.1.9:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://bazaar.launchpad.net/~mysql/mysql-server/5.5/revision/3097.15.15
- http://dev.mysql.com/doc/refman/5.1/en/news-5-1-62.html
- http://dev.mysql.com/doc/refman/5.5/en/news-5-5-22.html
- http://eromang.zataz.com/2012/04/10/oracle-mysql-innodb-bugs-13510739-and-63775-dos-demo/
- http://secunia.com/advisories/53372
- http://security.gentoo.org/glsa/glsa-201308-06.xml
- http://www.openwall.com/lists/oss-security/2012/04/13/7
- http://www.securityfocus.com/bid/52931