CVE Vulnerabilities

CVE-2003-0780

Published: Sep 22, 2003 | Modified: Dec 17, 2019
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Buffer overflow in get_salt_from_password from sql_acl.cc for MySQL 4.0.14 and earlier, and 3.23.x, allows attackers with ALTER TABLE privileges to execute arbitrary code via a long Password field.

Affected Software

Name Vendor Start Version End Version
Mysql Mysql 4.1.0 (including) 4.1.0 (including)
Mysql Oracle 3.23 (including) 3.23 (including)
Mysql Oracle 3.23.2 (including) 3.23.2 (including)
Mysql Oracle 3.23.3 (including) 3.23.3 (including)
Mysql Oracle 3.23.4 (including) 3.23.4 (including)
Mysql Oracle 3.23.5 (including) 3.23.5 (including)
Mysql Oracle 3.23.8 (including) 3.23.8 (including)
Mysql Oracle 3.23.9 (including) 3.23.9 (including)
Mysql Oracle 3.23.10 (including) 3.23.10 (including)
Mysql Oracle 3.23.22 (including) 3.23.22 (including)
Mysql Oracle 3.23.23 (including) 3.23.23 (including)
Mysql Oracle 3.23.24 (including) 3.23.24 (including)
Mysql Oracle 3.23.25 (including) 3.23.25 (including)
Mysql Oracle 3.23.26 (including) 3.23.26 (including)
Mysql Oracle 3.23.27 (including) 3.23.27 (including)
Mysql Oracle 3.23.28 (including) 3.23.28 (including)
Mysql Oracle 3.23.28-gamma (including) 3.23.28-gamma (including)
Mysql Oracle 3.23.29 (including) 3.23.29 (including)
Mysql Oracle 3.23.30 (including) 3.23.30 (including)
Mysql Oracle 3.23.31 (including) 3.23.31 (including)
Mysql Oracle 3.23.32 (including) 3.23.32 (including)
Mysql Oracle 3.23.33 (including) 3.23.33 (including)
Mysql Oracle 3.23.34 (including) 3.23.34 (including)
Mysql Oracle 3.23.36 (including) 3.23.36 (including)
Mysql Oracle 3.23.37 (including) 3.23.37 (including)
Mysql Oracle 3.23.38 (including) 3.23.38 (including)
Mysql Oracle 3.23.39 (including) 3.23.39 (including)
Mysql Oracle 3.23.40 (including) 3.23.40 (including)
Mysql Oracle 3.23.41 (including) 3.23.41 (including)
Mysql Oracle 3.23.42 (including) 3.23.42 (including)
Mysql Oracle 3.23.43 (including) 3.23.43 (including)
Mysql Oracle 3.23.44 (including) 3.23.44 (including)
Mysql Oracle 3.23.45 (including) 3.23.45 (including)
Mysql Oracle 3.23.46 (including) 3.23.46 (including)
Mysql Oracle 3.23.47 (including) 3.23.47 (including)
Mysql Oracle 3.23.48 (including) 3.23.48 (including)
Mysql Oracle 3.23.49 (including) 3.23.49 (including)
Mysql Oracle 3.23.50 (including) 3.23.50 (including)
Mysql Oracle 3.23.51 (including) 3.23.51 (including)
Mysql Oracle 3.23.52 (including) 3.23.52 (including)
Mysql Oracle 3.23.53 (including) 3.23.53 (including)
Mysql Oracle 3.23.53a (including) 3.23.53a (including)
Mysql Oracle 3.23.54 (including) 3.23.54 (including)
Mysql Oracle 3.23.54a (including) 3.23.54a (including)
Mysql Oracle 3.23.55 (including) 3.23.55 (including)
Mysql Oracle 3.23.56 (including) 3.23.56 (including)
Mysql Oracle 4.0.0 (including) 4.0.0 (including)
Mysql Oracle 4.0.1 (including) 4.0.1 (including)
Mysql Oracle 4.0.2 (including) 4.0.2 (including)
Mysql Oracle 4.0.3 (including) 4.0.3 (including)
Mysql Oracle 4.0.4 (including) 4.0.4 (including)
Mysql Oracle 4.0.5 (including) 4.0.5 (including)
Mysql Oracle 4.0.5a (including) 4.0.5a (including)
Mysql Oracle 4.0.6 (including) 4.0.6 (including)
Mysql Oracle 4.0.7 (including) 4.0.7 (including)
Mysql Oracle 4.0.7-gamma (including) 4.0.7-gamma (including)
Mysql Oracle 4.0.8 (including) 4.0.8 (including)
Mysql Oracle 4.0.8-gamma (including) 4.0.8-gamma (including)
Mysql Oracle 4.0.9 (including) 4.0.9 (including)
Mysql Oracle 4.0.9-gamma (including) 4.0.9-gamma (including)
Mysql Oracle 4.0.10 (including) 4.0.10 (including)
Mysql Oracle 4.0.11 (including) 4.0.11 (including)
Mysql Oracle 4.0.11-gamma (including) 4.0.11-gamma (including)
Mysql Oracle 4.0.12 (including) 4.0.12 (including)
Mysql Oracle 4.0.13 (including) 4.0.13 (including)
Mysql Oracle 4.0.14 (including) 4.0.14 (including)
Mysql Oracle 4.1.0-alpha (including) 4.1.0-alpha (including)
Linux Conectiva 7.0 (including) 7.0 (including)
Linux Conectiva 8.0 (including) 8.0 (including)
Linux Conectiva 9.0 (including) 9.0 (including)
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 RedHat *
Red Hat Enterprise Linux ES version 2.1 RedHat *
Red Hat Enterprise Linux WS version 2.1 RedHat *
Red Hat Linux 7.1 RedHat *
Red Hat Linux 7.2 RedHat *
Red Hat Linux 7.3 RedHat *
Red Hat Linux 8.0 RedHat *
Red Hat Linux 9 RedHat *
Red Hat Linux Advanced Workstation 2.1 RedHat *

References