CVE Vulnerabilities

CVE-2010-3833

Published: Jan 14, 2011 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
4 MODERATE
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 does not properly propagate type errors, which allows remote attackers to cause a denial of service (server crash) via crafted arguments to extreme-value functions such as (1) LEAST and (2) GREATEST, related to KILL_BAD_DATA and a CREATE TABLE … SELECT.

Affected Software

Name Vendor Start Version End Version
Mysql Mysql 5.1.5 (including) 5.1.5 (including)
Mysql Mysql 5.1.23 (including) 5.1.23 (including)
Mysql Mysql 5.1.31 (including) 5.1.31 (including)
Mysql Mysql 5.1.32 (including) 5.1.32 (including)
Mysql Mysql 5.1.34 (including) 5.1.34 (including)
Mysql Mysql 5.1.37 (including) 5.1.37 (including)
Mysql Oracle 5.1 (including) 5.1 (including)
Mysql Oracle 5.1.1 (including) 5.1.1 (including)
Mysql Oracle 5.1.2 (including) 5.1.2 (including)
Mysql Oracle 5.1.3 (including) 5.1.3 (including)
Mysql Oracle 5.1.4 (including) 5.1.4 (including)
Mysql Oracle 5.1.6 (including) 5.1.6 (including)
Mysql Oracle 5.1.7 (including) 5.1.7 (including)
Mysql Oracle 5.1.8 (including) 5.1.8 (including)
Mysql Oracle 5.1.9 (including) 5.1.9 (including)
Mysql Oracle 5.1.10 (including) 5.1.10 (including)
Mysql Oracle 5.1.11 (including) 5.1.11 (including)
Mysql Oracle 5.1.12 (including) 5.1.12 (including)
Mysql Oracle 5.1.13 (including) 5.1.13 (including)
Mysql Oracle 5.1.14 (including) 5.1.14 (including)
Mysql Oracle 5.1.15 (including) 5.1.15 (including)
Mysql Oracle 5.1.16 (including) 5.1.16 (including)
Mysql Oracle 5.1.17 (including) 5.1.17 (including)
Mysql Oracle 5.1.18 (including) 5.1.18 (including)
Mysql Oracle 5.1.19 (including) 5.1.19 (including)
Mysql Oracle 5.1.20 (including) 5.1.20 (including)
Mysql Oracle 5.1.21 (including) 5.1.21 (including)
Mysql Oracle 5.1.22 (including) 5.1.22 (including)
Mysql Oracle 5.1.23-a (including) 5.1.23-a (including)
Mysql Oracle 5.1.24 (including) 5.1.24 (including)
Mysql Oracle 5.1.25 (including) 5.1.25 (including)
Mysql Oracle 5.1.26 (including) 5.1.26 (including)
Mysql Oracle 5.1.27 (including) 5.1.27 (including)
Mysql Oracle 5.1.28 (including) 5.1.28 (including)
Mysql Oracle 5.1.29 (including) 5.1.29 (including)
Mysql Oracle 5.1.30 (including) 5.1.30 (including)
Mysql Oracle 5.1.31-sp1 (including) 5.1.31-sp1 (including)
Mysql Oracle 5.1.33 (including) 5.1.33 (including)
Mysql Oracle 5.1.34-sp1 (including) 5.1.34-sp1 (including)
Mysql Oracle 5.1.35 (including) 5.1.35 (including)
Mysql Oracle 5.1.36 (including) 5.1.36 (including)
Mysql Oracle 5.1.37-sp1 (including) 5.1.37-sp1 (including)
Mysql Oracle 5.1.38 (including) 5.1.38 (including)
Mysql Oracle 5.1.39 (including) 5.1.39 (including)
Mysql Oracle 5.1.40 (including) 5.1.40 (including)
Mysql Oracle 5.1.40-sp1 (including) 5.1.40-sp1 (including)
Mysql Oracle 5.1.41 (including) 5.1.41 (including)
Mysql Oracle 5.1.42 (including) 5.1.42 (including)
Mysql Oracle 5.1.43 (including) 5.1.43 (including)
Mysql Oracle 5.1.43-sp1 (including) 5.1.43-sp1 (including)
Mysql Oracle 5.1.44 (including) 5.1.44 (including)
Mysql Oracle 5.1.45 (including) 5.1.45 (including)
Mysql Oracle 5.1.46 (including) 5.1.46 (including)
Mysql Oracle 5.1.46-sp1 (including) 5.1.46-sp1 (including)
Mysql Oracle 5.1.47 (including) 5.1.47 (including)
Mysql Oracle 5.1.48 (including) 5.1.48 (including)
Mysql Oracle 5.1.49 (including) 5.1.49 (including)
Mysql Oracle 5.1.49-sp1 (including) 5.1.49-sp1 (including)
Mysql Oracle 5.1.50 (including) 5.1.50 (including)
Red Hat Enterprise Linux 5 RedHat mysql-0:5.0.77-4.el5_5.4 *
Red Hat Enterprise Linux 6 RedHat mysql-0:5.1.52-1.el6_0.1 *
Mysql-5.1 Ubuntu maverick *
Mysql-5.1 Ubuntu upstream *
Mysql-cluster-7.0 Ubuntu lucid *
Mysql-cluster-7.0 Ubuntu maverick *
Mysql-cluster-7.0 Ubuntu natty *
Mysql-cluster-7.0 Ubuntu oneiric *
Mysql-dfsg-5.0 Ubuntu hardy *
Mysql-dfsg-5.0 Ubuntu karmic *
Mysql-dfsg-5.1 Ubuntu karmic *
Mysql-dfsg-5.1 Ubuntu lucid *
Mysql-dfsg-5.1 Ubuntu upstream *

References