MySQL 5.x before 5.0.36 allows local users to cause a denial of service (database crash) by performing information_schema table subselects and using ORDER BY to sort a single-row result, which prevents certain structure elements from being initialized and triggers a NULL dereference in the filesort function.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Mysql | Mysql | * | 5.0.33 (including) |
| Mysql | Mysql | 5.0.0 (including) | 5.0.0 (including) |
| Mysql | Mysql | 5.0.1 (including) | 5.0.1 (including) |
| Mysql | Mysql | 5.0.2 (including) | 5.0.2 (including) |
| Mysql | Mysql | 5.0.3 (including) | 5.0.3 (including) |
| Mysql | Mysql | 5.0.4 (including) | 5.0.4 (including) |
| Mysql | Mysql | 5.0.5 (including) | 5.0.5 (including) |
| Mysql | Mysql | 5.0.10 (including) | 5.0.10 (including) |
| Mysql | Mysql | 5.0.15 (including) | 5.0.15 (including) |
| Mysql | Mysql | 5.0.16 (including) | 5.0.16 (including) |
| Mysql | Mysql | 5.0.17 (including) | 5.0.17 (including) |
| Mysql | Mysql | 5.0.20 (including) | 5.0.20 (including) |
| Mysql | Mysql | 5.0.24 (including) | 5.0.24 (including) |
| Mysql | Mysql | 5.0.30 (including) | 5.0.30 (including) |
| Mysql | Oracle | 5.0.6 (including) | 5.0.6 (including) |
| Mysql | Oracle | 5.0.7 (including) | 5.0.7 (including) |
| Mysql | Oracle | 5.0.32 (including) | 5.0.32 (including) |
| Mysql | Oracle | 5.0.41 (including) | 5.0.41 (including) |
| Red Hat Enterprise Linux 5 | RedHat | mysql-0:5.0.45-7.el5 | * |
| Mysql-dfsg-5.0 | Ubuntu | dapper | * |
| Mysql-dfsg-5.0 | Ubuntu | devel | * |
| Mysql-dfsg-5.0 | Ubuntu | edgy | * |
| Mysql-dfsg-5.0 | Ubuntu | feisty | * |