Korean
<< Back
VID 25078
Severity 30
Port 3306
Protocol TCP
Class DB
Detailed Description A version of MySQL which is older than 5.0.66 is running on the host. MySQL versions 5.0.x prior to 5.0.66 are denial-of-service vulnerability. A bug in such versions can lead to a server crash in 'Item_bin_string::Item_bin_string' when handling an empty bit-string literal (b'). Using a simple SELECT statement, an authenticated remote user can leverage this issue to crash the database server and deny service to legitimate users.

* Note: This check solely relied on the banner of the remote MySQL server to assess this vulnerability, so this might be a false positive.

* References:
http://bugs.mysql.com/bug.php?id=35658
http://dev.mysql.com/doc/refman/5.1/en/news-5-1-26.html
http://www.openwall.com/lists/oss-security/2008/09/09/4
http://www.openwall.com/lists/oss-security/2008/09/09/7

* Platforms Affected:
MySQL versions 5.0.x prior to 5.0.66
Any operating system Any version
Recommendation Upgrade to the latest version of MySQL (5.0.66 or later), available from the MySQL Web site at http://www.mysql.com/
Related URL CVE-2008-3963 (CVE)
Related URL 31081 (SecurityFocus)
Related URL (ISS)