CVE Vulnerabilities

CVE-2007-1420

Published: Mar 12, 2007 | Modified: Dec 17, 2019
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

MySQL 5.x before 5.0.36 allows local users to cause a denial of service (database crash) by performing information_schema table subselects and using ORDER BY to sort a single-row result, which prevents certain structure elements from being initialized and triggers a NULL dereference in the filesort function.

Affected Software

Name Vendor Start Version End Version
Mysql Mysql * 5.0.33 (including)
Mysql Mysql 5.0.0 (including) 5.0.0 (including)
Mysql Mysql 5.0.1 (including) 5.0.1 (including)
Mysql Mysql 5.0.2 (including) 5.0.2 (including)
Mysql Mysql 5.0.3 (including) 5.0.3 (including)
Mysql Mysql 5.0.4 (including) 5.0.4 (including)
Mysql Mysql 5.0.5 (including) 5.0.5 (including)
Mysql Mysql 5.0.10 (including) 5.0.10 (including)
Mysql Mysql 5.0.15 (including) 5.0.15 (including)
Mysql Mysql 5.0.16 (including) 5.0.16 (including)
Mysql Mysql 5.0.17 (including) 5.0.17 (including)
Mysql Mysql 5.0.20 (including) 5.0.20 (including)
Mysql Mysql 5.0.24 (including) 5.0.24 (including)
Mysql Mysql 5.0.30 (including) 5.0.30 (including)
Mysql Oracle 5.0.6 (including) 5.0.6 (including)
Mysql Oracle 5.0.7 (including) 5.0.7 (including)
Mysql Oracle 5.0.32 (including) 5.0.32 (including)
Mysql Oracle 5.0.41 (including) 5.0.41 (including)
Red Hat Enterprise Linux 5 RedHat mysql-0:5.0.45-7.el5 *
Mysql-dfsg-5.0 Ubuntu dapper *
Mysql-dfsg-5.0 Ubuntu devel *
Mysql-dfsg-5.0 Ubuntu edgy *
Mysql-dfsg-5.0 Ubuntu feisty *

References