CVE Vulnerabilities

CVE-2005-0711

Published: May 02, 2005 | Modified: Dec 17, 2019
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, uses predictable file names when creating temporary tables, which allows local users with CREATE TEMPORARY TABLE privileges to overwrite arbitrary files via a symlink attack.

Affected Software

Name Vendor Start Version End Version
Mysql Mysql 4.1.0 (including) 4.1.0 (including)
Mysql Mysql 4.1.3 (including) 4.1.3 (including)
Mysql Mysql 4.1.10 (including) 4.1.10 (including)
Mysql Oracle 3.23.49 (including) 3.23.49 (including)
Mysql Oracle 4.0.0 (including) 4.0.0 (including)
Mysql Oracle 4.0.1 (including) 4.0.1 (including)
Mysql Oracle 4.0.2 (including) 4.0.2 (including)
Mysql Oracle 4.0.3 (including) 4.0.3 (including)
Mysql Oracle 4.0.4 (including) 4.0.4 (including)
Mysql Oracle 4.0.5 (including) 4.0.5 (including)
Mysql Oracle 4.0.5a (including) 4.0.5a (including)
Mysql Oracle 4.0.6 (including) 4.0.6 (including)
Mysql Oracle 4.0.7 (including) 4.0.7 (including)
Mysql Oracle 4.0.7-gamma (including) 4.0.7-gamma (including)
Mysql Oracle 4.0.8 (including) 4.0.8 (including)
Mysql Oracle 4.0.8-gamma (including) 4.0.8-gamma (including)
Mysql Oracle 4.0.9 (including) 4.0.9 (including)
Mysql Oracle 4.0.9-gamma (including) 4.0.9-gamma (including)
Mysql Oracle 4.0.10 (including) 4.0.10 (including)
Mysql Oracle 4.0.11 (including) 4.0.11 (including)
Mysql Oracle 4.0.11-gamma (including) 4.0.11-gamma (including)
Mysql Oracle 4.0.12 (including) 4.0.12 (including)
Mysql Oracle 4.0.13 (including) 4.0.13 (including)
Mysql Oracle 4.0.14 (including) 4.0.14 (including)
Mysql Oracle 4.0.15 (including) 4.0.15 (including)
Mysql Oracle 4.0.18 (including) 4.0.18 (including)
Mysql Oracle 4.0.20 (including) 4.0.20 (including)
Mysql Oracle 4.0.21 (including) 4.0.21 (including)
Mysql Oracle 4.0.23 (including) 4.0.23 (including)
Mysql Oracle 4.1.0-alpha (including) 4.1.0-alpha (including)
Mysql Oracle 4.1.2-alpha (including) 4.1.2-alpha (including)
Mysql Oracle 4.1.3-beta (including) 4.1.3-beta (including)
Mysql Oracle 4.1.4 (including) 4.1.4 (including)
Mysql Oracle 4.1.5 (including) 4.1.5 (including)

References