MySQL 5.0.18 and earlier allows local users to bypass logging mechanisms via SQL queries that contain the NULL character, which are not properly handled by the mysql_real_query function. NOTE: this issue was originally reported for the mysql_query function, but the vendor states that since mysql_query expects a null character, this is not an issue for mysql_query.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mysql | Mysql | 4.1.0 (including) | 4.1.0 (including) |
Mysql | Mysql | 4.1.3 (including) | 4.1.3 (including) |
Mysql | Mysql | 4.1.8 (including) | 4.1.8 (including) |
Mysql | Mysql | 4.1.10 (including) | 4.1.10 (including) |
Mysql | Mysql | 4.1.12 (including) | 4.1.12 (including) |
Mysql | Mysql | 4.1.13 (including) | 4.1.13 (including) |
Mysql | Mysql | 4.1.14 (including) | 4.1.14 (including) |
Mysql | Mysql | 4.1.15 (including) | 4.1.15 (including) |
Mysql | Mysql | 5.0.1 (including) | 5.0.1 (including) |
Mysql | Mysql | 5.0.2 (including) | 5.0.2 (including) |
Mysql | Mysql | 5.0.4 (including) | 5.0.4 (including) |
Mysql | Mysql | 5.0.5 (including) | 5.0.5 (including) |
Mysql | Mysql | 5.0.10 (including) | 5.0.10 (including) |
Mysql | Mysql | 5.0.15 (including) | 5.0.15 (including) |
Mysql | Mysql | 5.0.16 (including) | 5.0.16 (including) |
Mysql | Mysql | 5.0.17 (including) | 5.0.17 (including) |
Mysql | Oracle | 3.23 (including) | 3.23 (including) |
Mysql | Oracle | 3.23.0-alpha (including) | 3.23.0-alpha (including) |
Mysql | Oracle | 3.23.1 (including) | 3.23.1 (including) |
Mysql | Oracle | 3.23.2 (including) | 3.23.2 (including) |
Mysql | Oracle | 3.23.3 (including) | 3.23.3 (including) |
Mysql | Oracle | 3.23.4 (including) | 3.23.4 (including) |
Mysql | Oracle | 3.23.5 (including) | 3.23.5 (including) |
Mysql | Oracle | 3.23.6 (including) | 3.23.6 (including) |
Mysql | Oracle | 3.23.7 (including) | 3.23.7 (including) |
Mysql | Oracle | 3.23.8 (including) | 3.23.8 (including) |
Mysql | Oracle | 3.23.9 (including) | 3.23.9 (including) |
Mysql | Oracle | 3.23.10 (including) | 3.23.10 (including) |
Mysql | Oracle | 3.23.11 (including) | 3.23.11 (including) |
Mysql | Oracle | 3.23.12 (including) | 3.23.12 (including) |
Mysql | Oracle | 3.23.13 (including) | 3.23.13 (including) |
Mysql | Oracle | 3.23.14 (including) | 3.23.14 (including) |
Mysql | Oracle | 3.23.15 (including) | 3.23.15 (including) |
Mysql | Oracle | 3.23.16 (including) | 3.23.16 (including) |
Mysql | Oracle | 3.23.17 (including) | 3.23.17 (including) |
Mysql | Oracle | 3.23.18 (including) | 3.23.18 (including) |
Mysql | Oracle | 3.23.19 (including) | 3.23.19 (including) |
Mysql | Oracle | 3.23.20-beta (including) | 3.23.20-beta (including) |
Mysql | Oracle | 3.23.21 (including) | 3.23.21 (including) |
Mysql | Oracle | 3.23.22 (including) | 3.23.22 (including) |
Mysql | Oracle | 3.23.23 (including) | 3.23.23 (including) |
Mysql | Oracle | 3.23.24 (including) | 3.23.24 (including) |
Mysql | Oracle | 3.23.25 (including) | 3.23.25 (including) |
Mysql | Oracle | 3.23.26 (including) | 3.23.26 (including) |
Mysql | Oracle | 3.23.27 (including) | 3.23.27 (including) |
Mysql | Oracle | 3.23.28-gamma (including) | 3.23.28-gamma (including) |
Mysql | Oracle | 3.23.29 (including) | 3.23.29 (including) |
Mysql | Oracle | 3.23.30 (including) | 3.23.30 (including) |
Mysql | Oracle | 3.23.31 (including) | 3.23.31 (including) |
Mysql | Oracle | 3.23.32 (including) | 3.23.32 (including) |
Mysql | Oracle | 3.23.33 (including) | 3.23.33 (including) |
Mysql | Oracle | 3.23.34 (including) | 3.23.34 (including) |
Mysql | Oracle | 3.23.35 (including) | 3.23.35 (including) |
Mysql | Oracle | 3.23.36 (including) | 3.23.36 (including) |
Mysql | Oracle | 3.23.37 (including) | 3.23.37 (including) |
Mysql | Oracle | 3.23.38 (including) | 3.23.38 (including) |
Mysql | Oracle | 3.23.39 (including) | 3.23.39 (including) |
Mysql | Oracle | 3.23.40 (including) | 3.23.40 (including) |
Mysql | Oracle | 3.23.41 (including) | 3.23.41 (including) |
Mysql | Oracle | 3.23.42 (including) | 3.23.42 (including) |
Mysql | Oracle | 3.23.43 (including) | 3.23.43 (including) |
Mysql | Oracle | 3.23.44 (including) | 3.23.44 (including) |
Mysql | Oracle | 3.23.45 (including) | 3.23.45 (including) |
Mysql | Oracle | 3.23.46 (including) | 3.23.46 (including) |
Mysql | Oracle | 3.23.47 (including) | 3.23.47 (including) |
Mysql | Oracle | 3.23.48 (including) | 3.23.48 (including) |
Mysql | Oracle | 3.23.49 (including) | 3.23.49 (including) |
Mysql | Oracle | 3.23.50 (including) | 3.23.50 (including) |
Mysql | Oracle | 3.23.51 (including) | 3.23.51 (including) |
Mysql | Oracle | 3.23.52 (including) | 3.23.52 (including) |
Mysql | Oracle | 3.23.53 (including) | 3.23.53 (including) |
Mysql | Oracle | 3.23.54 (including) | 3.23.54 (including) |
Mysql | Oracle | 3.23.55 (including) | 3.23.55 (including) |
Mysql | Oracle | 3.23.56 (including) | 3.23.56 (including) |
Mysql | Oracle | 3.23.57 (including) | 3.23.57 (including) |
Mysql | Oracle | 3.23.58 (including) | 3.23.58 (including) |
Mysql | Oracle | 3.23.59 (including) | 3.23.59 (including) |
Mysql | Oracle | 4.0.0 (including) | 4.0.0 (including) |
Mysql | Oracle | 4.0.1 (including) | 4.0.1 (including) |
Mysql | Oracle | 4.0.2 (including) | 4.0.2 (including) |
Mysql | Oracle | 4.0.3 (including) | 4.0.3 (including) |
Mysql | Oracle | 4.0.4 (including) | 4.0.4 (including) |
Mysql | Oracle | 4.0.5 (including) | 4.0.5 (including) |
Mysql | Oracle | 4.0.5a (including) | 4.0.5a (including) |
Mysql | Oracle | 4.0.6 (including) | 4.0.6 (including) |
Mysql | Oracle | 4.0.7 (including) | 4.0.7 (including) |
Mysql | Oracle | 4.0.7-gamma (including) | 4.0.7-gamma (including) |
Mysql | Oracle | 4.0.8 (including) | 4.0.8 (including) |
Mysql | Oracle | 4.0.8-gamma (including) | 4.0.8-gamma (including) |
Mysql | Oracle | 4.0.9 (including) | 4.0.9 (including) |
Mysql | Oracle | 4.0.9-gamma (including) | 4.0.9-gamma (including) |
Mysql | Oracle | 4.0.10 (including) | 4.0.10 (including) |
Mysql | Oracle | 4.0.11 (including) | 4.0.11 (including) |
Mysql | Oracle | 4.0.11-gamma (including) | 4.0.11-gamma (including) |
Mysql | Oracle | 4.0.12 (including) | 4.0.12 (including) |
Mysql | Oracle | 4.0.13 (including) | 4.0.13 (including) |
Mysql | Oracle | 4.0.14 (including) | 4.0.14 (including) |
Mysql | Oracle | 4.0.15 (including) | 4.0.15 (including) |
Mysql | Oracle | 4.0.16 (including) | 4.0.16 (including) |
Mysql | Oracle | 4.0.17 (including) | 4.0.17 (including) |
Mysql | Oracle | 4.0.18 (including) | 4.0.18 (including) |
Mysql | Oracle | 4.0.19 (including) | 4.0.19 (including) |
Mysql | Oracle | 4.0.20 (including) | 4.0.20 (including) |
Mysql | Oracle | 4.0.21 (including) | 4.0.21 (including) |
Mysql | Oracle | 4.0.23 (including) | 4.0.23 (including) |
Mysql | Oracle | 4.0.24 (including) | 4.0.24 (including) |
Mysql | Oracle | 4.0.25 (including) | 4.0.25 (including) |
Mysql | Oracle | 4.0.26 (including) | 4.0.26 (including) |
Mysql | Oracle | 4.0.27 (including) | 4.0.27 (including) |
Mysql | Oracle | 4.1.0-alpha (including) | 4.1.0-alpha (including) |
Mysql | Oracle | 4.1.2-alpha (including) | 4.1.2-alpha (including) |
Mysql | Oracle | 4.1.3-beta (including) | 4.1.3-beta (including) |
Mysql | Oracle | 4.1.4 (including) | 4.1.4 (including) |
Mysql | Oracle | 4.1.5 (including) | 4.1.5 (including) |
Mysql | Oracle | 4.1.6 (including) | 4.1.6 (including) |
Mysql | Oracle | 4.1.7 (including) | 4.1.7 (including) |
Mysql | Oracle | 4.1.9 (including) | 4.1.9 (including) |
Mysql | Oracle | 4.1.11 (including) | 4.1.11 (including) |
Mysql | Oracle | 4.1.16 (including) | 4.1.16 (including) |
Mysql | Oracle | 4.1.17 (including) | 4.1.17 (including) |
Mysql | Oracle | 4.1.18 (including) | 4.1.18 (including) |
Mysql | Oracle | 4.1.19 (including) | 4.1.19 (including) |
Mysql | Oracle | 5.0.0-alpha (including) | 5.0.0-alpha (including) |
Mysql | Oracle | 5.0.3-beta (including) | 5.0.3-beta (including) |
Mysql | Oracle | 5.0.6 (including) | 5.0.6 (including) |
Mysql | Oracle | 5.0.7 (including) | 5.0.7 (including) |
Mysql | Oracle | 5.0.8 (including) | 5.0.8 (including) |
Mysql | Oracle | 5.0.9 (including) | 5.0.9 (including) |
Mysql | Oracle | 5.0.11 (including) | 5.0.11 (including) |
Mysql | Oracle | 5.0.12 (including) | 5.0.12 (including) |
Mysql | Oracle | 5.0.13 (including) | 5.0.13 (including) |
Mysql | Oracle | 5.0.14 (including) | 5.0.14 (including) |
Mysql | Oracle | 5.0.18 (including) | 5.0.18 (including) |
Red Hat Enterprise Linux 4 | RedHat | mysql-0:4.1.20-1.RHEL4.1 | * |
Red Hat Enterprise Linux 5 | RedHat | mysql-0:5.0.45-7.el5 | * |
Red Hat Web Application Stack for RHEL 4 | RedHat | mysql-0:5.0.30-1.el4s1.1 | * |
Mysql-dfsg-5.0 | Ubuntu | dapper | * |
Mysql-dfsg-5.0 | Ubuntu | devel | * |
Mysql-dfsg-5.0 | Ubuntu | edgy | * |
Mysql-dfsg-5.0 | Ubuntu | feisty | * |