Welcome Guest ( Log In | Register )

  Recent Software News
Mozilla Releases Firefox 1.0 RC2
Intel Desktop Control Center 1.3.0....
Google Desktop Search Plus
Azureus 2.2.0.0
iTunes 4.7
  Recent Gaming News
Ken Kutaragi's Comments on PSP Refr...
Hitman Strikes Again - Blood Money
World of Warcraft - November 23
Half-Life 2 given MA15+ Rating
Half-Life 2 headed to arcades
  Recent Reviews
 · CoolerMaster Aerogate 3 A...
 · CoolerMaster AquaGate Wat...
 · OCZ Copper BGA Ramsinks
 · Mapower Warps Portable 3....
 · Vantec - PCI & RAM Slot P...
  Recent Forum Posts
Leadtek A350XT TDH and overclo...
FX5900U vs 9800Pro
Google Gmail Invites
Doom 3 SDK Released
Windows XP Sp2 Problems
  Announcement

Welcome to AusPCWorld - Australia's Leading PC Technology News & Reviews site.



> AusPCWorld > Tech News > Patch Alert for MySQL






   
Patch Alert for MySQL
Posted by admin on 11 Oct 2004 - 22:39 0 comments
Previous Post | Tech News | Next Post
 
Two Security alerts have raised and an update issued for mysql. This fixes multiple vulnerabilities, which can be exploited by malicious users to bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise the system.

Two vulnerabilities have been reported in MySQL, which can be exploited by malicious users to bypass certain security restrictions or cause a DoS (Denial of Service).

1) An error in "ALTER TABLE ... RENAME" operations causes the CREATE/INSERT rights of old tables to be checked, which potentially can be exploited to bypass some applied security restrictions.

The vulnerability has been reported in version 3.23. Other versions may also be affected.

2) It is possible to crash or stall the server when multiple threads ALTER the same or different MERGE tables to change the UNION.

The vulnerability has been reported in version 3.23 and 4.0.18. Other versions may also be affected.

View: Secunia Advisory: SA12784
View: Secunia Advisory: SA12783



There are 0 additional comments, Post a comment | View printable post | Open/Close All Comments


Add A new comment
Name: (Register)
Email: (optional)
Quick HTML: (help)
  Close current tag   Standard Mode
  Close all tags   Enhanced Mode
Comment:


Smilies
(help)
Parse URL's: (will automatically add [url] [/url] round the web addresses in your comment)