CVE Vulnerabilities

CVE-2010-3837

Published: Jan 14, 2011 | Modified: Dec 17, 2019
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V2
4 MODERATE
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (server crash) via a prepared statement that uses GROUP_CONCAT with the WITH ROLLUP modifier, probably triggering a use-after-free error when a copied object is modified in a way that also affects the original object.

Affected Software

Name Vendor Start Version End Version
Mysql Mysql 5.1.5 (including) 5.1.5 (including)
Mysql Mysql 5.1.23 (including) 5.1.23 (including)
Mysql Mysql 5.1.31 (including) 5.1.31 (including)
Mysql Mysql 5.1.32 (including) 5.1.32 (including)
Mysql Mysql 5.1.34 (including) 5.1.34 (including)
Mysql Mysql 5.1.37 (including) 5.1.37 (including)
Mysql Oracle 5.1 (including) 5.1 (including)
Mysql Oracle 5.1.1 (including) 5.1.1 (including)
Mysql Oracle 5.1.2 (including) 5.1.2 (including)
Mysql Oracle 5.1.3 (including) 5.1.3 (including)
Mysql Oracle 5.1.4 (including) 5.1.4 (including)
Mysql Oracle 5.1.6 (including) 5.1.6 (including)
Mysql Oracle 5.1.7 (including) 5.1.7 (including)
Mysql Oracle 5.1.8 (including) 5.1.8 (including)
Mysql Oracle 5.1.9 (including) 5.1.9 (including)
Mysql Oracle 5.1.10 (including) 5.1.10 (including)
Mysql Oracle 5.1.11 (including) 5.1.11 (including)
Mysql Oracle 5.1.12 (including) 5.1.12 (including)
Mysql Oracle 5.1.13 (including) 5.1.13 (including)
Mysql Oracle 5.1.14 (including) 5.1.14 (including)
Mysql Oracle 5.1.15 (including) 5.1.15 (including)
Mysql Oracle 5.1.16 (including) 5.1.16 (including)
Mysql Oracle 5.1.17 (including) 5.1.17 (including)
Mysql Oracle 5.1.18 (including) 5.1.18 (including)
Mysql Oracle 5.1.19 (including) 5.1.19 (including)
Mysql Oracle 5.1.20 (including) 5.1.20 (including)
Mysql Oracle 5.1.21 (including) 5.1.21 (including)
Mysql Oracle 5.1.22 (including) 5.1.22 (including)
Mysql Oracle 5.1.23-a (including) 5.1.23-a (including)
Mysql Oracle 5.1.24 (including) 5.1.24 (including)
Mysql Oracle 5.1.25 (including) 5.1.25 (including)
Mysql Oracle 5.1.26 (including) 5.1.26 (including)
Mysql Oracle 5.1.27 (including) 5.1.27 (including)
Mysql Oracle 5.1.28 (including) 5.1.28 (including)
Mysql Oracle 5.1.29 (including) 5.1.29 (including)
Mysql Oracle 5.1.30 (including) 5.1.30 (including)
Mysql Oracle 5.1.31-sp1 (including) 5.1.31-sp1 (including)
Mysql Oracle 5.1.33 (including) 5.1.33 (including)
Mysql Oracle 5.1.34-sp1 (including) 5.1.34-sp1 (including)
Mysql Oracle 5.1.35 (including) 5.1.35 (including)
Mysql Oracle 5.1.36 (including) 5.1.36 (including)
Mysql Oracle 5.1.37-sp1 (including) 5.1.37-sp1 (including)
Mysql Oracle 5.1.38 (including) 5.1.38 (including)
Mysql Oracle 5.1.39 (including) 5.1.39 (including)
Mysql Oracle 5.1.40 (including) 5.1.40 (including)
Mysql Oracle 5.1.40-sp1 (including) 5.1.40-sp1 (including)
Mysql Oracle 5.1.41 (including) 5.1.41 (including)
Mysql Oracle 5.1.42 (including) 5.1.42 (including)
Mysql Oracle 5.1.43 (including) 5.1.43 (including)
Mysql Oracle 5.1.43-sp1 (including) 5.1.43-sp1 (including)
Mysql Oracle 5.1.44 (including) 5.1.44 (including)
Mysql Oracle 5.1.45 (including) 5.1.45 (including)
Mysql Oracle 5.1.46 (including) 5.1.46 (including)
Mysql Oracle 5.1.46-sp1 (including) 5.1.46-sp1 (including)
Mysql Oracle 5.1.47 (including) 5.1.47 (including)
Mysql Oracle 5.1.48 (including) 5.1.48 (including)
Mysql Oracle 5.1.49 (including) 5.1.49 (including)
Mysql Oracle 5.1.49-sp1 (including) 5.1.49-sp1 (including)
Mysql Oracle 5.1.50 (including) 5.1.50 (including)
Mysql-5.1 Ubuntu maverick *
Mysql-5.1 Ubuntu upstream *
Mysql-cluster-7.0 Ubuntu lucid *
Mysql-cluster-7.0 Ubuntu maverick *
Mysql-cluster-7.0 Ubuntu natty *
Mysql-cluster-7.0 Ubuntu oneiric *
Mysql-dfsg-5.0 Ubuntu dapper *
Mysql-dfsg-5.0 Ubuntu hardy *
Mysql-dfsg-5.0 Ubuntu karmic *
Mysql-dfsg-5.1 Ubuntu karmic *
Mysql-dfsg-5.1 Ubuntu lucid *
Mysql-dfsg-5.1 Ubuntu upstream *
Red Hat Enterprise Linux 5 RedHat mysql-0:5.0.77-4.el5_5.4 *
Red Hat Enterprise Linux 6 RedHat mysql-0:5.1.52-1.el6_0.1 *

References