CVE Vulnerabilities

CVE-2010-3835

Published: Jan 14, 2011 | Modified: Dec 17, 2019
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V2
4 MODERATE
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

MySQL 5.1 before 5.1.51 and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (mysqld server crash) by performing a user-variable assignment in a logical expression that is calculated and stored in a temporary table for GROUP BY, then causing the expression value to be used after the table is created, which causes the expression to be re-evaluated instead of accessing its value from the table.

Affected Software

Name Vendor Start Version End Version
Mysql Mysql 5.1.5 (including) 5.1.5 (including)
Mysql Mysql 5.1.23 (including) 5.1.23 (including)
Mysql Mysql 5.1.31 (including) 5.1.31 (including)
Mysql Mysql 5.1.32 (including) 5.1.32 (including)
Mysql Mysql 5.1.34 (including) 5.1.34 (including)
Mysql Mysql 5.1.37 (including) 5.1.37 (including)
Mysql Oracle 5.1 (including) 5.1 (including)
Mysql Oracle 5.1.1 (including) 5.1.1 (including)
Mysql Oracle 5.1.2 (including) 5.1.2 (including)
Mysql Oracle 5.1.3 (including) 5.1.3 (including)
Mysql Oracle 5.1.4 (including) 5.1.4 (including)
Mysql Oracle 5.1.6 (including) 5.1.6 (including)
Mysql Oracle 5.1.7 (including) 5.1.7 (including)
Mysql Oracle 5.1.8 (including) 5.1.8 (including)
Mysql Oracle 5.1.9 (including) 5.1.9 (including)
Mysql Oracle 5.1.10 (including) 5.1.10 (including)
Mysql Oracle 5.1.11 (including) 5.1.11 (including)
Mysql Oracle 5.1.12 (including) 5.1.12 (including)
Mysql Oracle 5.1.13 (including) 5.1.13 (including)
Mysql Oracle 5.1.14 (including) 5.1.14 (including)
Mysql Oracle 5.1.15 (including) 5.1.15 (including)
Mysql Oracle 5.1.16 (including) 5.1.16 (including)
Mysql Oracle 5.1.17 (including) 5.1.17 (including)
Mysql Oracle 5.1.18 (including) 5.1.18 (including)
Mysql Oracle 5.1.19 (including) 5.1.19 (including)
Mysql Oracle 5.1.20 (including) 5.1.20 (including)
Mysql Oracle 5.1.21 (including) 5.1.21 (including)
Mysql Oracle 5.1.22 (including) 5.1.22 (including)
Mysql Oracle 5.1.23-a (including) 5.1.23-a (including)
Mysql Oracle 5.1.24 (including) 5.1.24 (including)
Mysql Oracle 5.1.25 (including) 5.1.25 (including)
Mysql Oracle 5.1.26 (including) 5.1.26 (including)
Mysql Oracle 5.1.27 (including) 5.1.27 (including)
Mysql Oracle 5.1.28 (including) 5.1.28 (including)
Mysql Oracle 5.1.29 (including) 5.1.29 (including)
Mysql Oracle 5.1.30 (including) 5.1.30 (including)
Mysql Oracle 5.1.31-sp1 (including) 5.1.31-sp1 (including)
Mysql Oracle 5.1.33 (including) 5.1.33 (including)
Mysql Oracle 5.1.34-sp1 (including) 5.1.34-sp1 (including)
Mysql Oracle 5.1.35 (including) 5.1.35 (including)
Mysql Oracle 5.1.36 (including) 5.1.36 (including)
Mysql Oracle 5.1.37-sp1 (including) 5.1.37-sp1 (including)
Mysql Oracle 5.1.38 (including) 5.1.38 (including)
Mysql Oracle 5.1.39 (including) 5.1.39 (including)
Mysql Oracle 5.1.40 (including) 5.1.40 (including)
Mysql Oracle 5.1.40-sp1 (including) 5.1.40-sp1 (including)
Mysql Oracle 5.1.41 (including) 5.1.41 (including)
Mysql Oracle 5.1.42 (including) 5.1.42 (including)
Mysql Oracle 5.1.43 (including) 5.1.43 (including)
Mysql Oracle 5.1.43-sp1 (including) 5.1.43-sp1 (including)
Mysql Oracle 5.1.44 (including) 5.1.44 (including)
Mysql Oracle 5.1.45 (including) 5.1.45 (including)
Mysql Oracle 5.1.46 (including) 5.1.46 (including)
Mysql Oracle 5.1.46-sp1 (including) 5.1.46-sp1 (including)
Mysql Oracle 5.1.47 (including) 5.1.47 (including)
Mysql Oracle 5.1.48 (including) 5.1.48 (including)
Mysql Oracle 5.1.49 (including) 5.1.49 (including)
Mysql Oracle 5.1.49-sp1 (including) 5.1.49-sp1 (including)
Mysql Oracle 5.1.50 (including) 5.1.50 (including)
Red Hat Enterprise Linux 5 RedHat mysql-0:5.0.77-4.el5_5.4 *
Red Hat Enterprise Linux 6 RedHat mysql-0:5.1.52-1.el6_0.1 *
Mysql-5.1 Ubuntu maverick *
Mysql-5.1 Ubuntu upstream *
Mysql-cluster-7.0 Ubuntu lucid *
Mysql-cluster-7.0 Ubuntu maverick *
Mysql-cluster-7.0 Ubuntu natty *
Mysql-cluster-7.0 Ubuntu oneiric *
Mysql-dfsg-5.0 Ubuntu hardy *
Mysql-dfsg-5.0 Ubuntu karmic *
Mysql-dfsg-5.1 Ubuntu karmic *
Mysql-dfsg-5.1 Ubuntu lucid *
Mysql-dfsg-5.1 Ubuntu upstream *

References