CVE Vulnerabilities

CVE-2010-3838

Published: Jan 14, 2011 | Modified: Dec 17, 2019
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V2
4 MODERATE
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (server crash) via a query that uses the (1) GREATEST or (2) LEAST function with a mixed list of numeric and LONGBLOB arguments, which is not properly handled when the functions result is processed using an intermediate temporary table.

Affected Software

Name Vendor Start Version End Version
Mysql Mysql 5.1.5 (including) 5.1.5 (including)
Mysql Mysql 5.1.23 (including) 5.1.23 (including)
Mysql Mysql 5.1.31 (including) 5.1.31 (including)
Mysql Mysql 5.1.32 (including) 5.1.32 (including)
Mysql Mysql 5.1.34 (including) 5.1.34 (including)
Mysql Mysql 5.1.37 (including) 5.1.37 (including)
Mysql Oracle 5.1 (including) 5.1 (including)
Mysql Oracle 5.1.1 (including) 5.1.1 (including)
Mysql Oracle 5.1.2 (including) 5.1.2 (including)
Mysql Oracle 5.1.3 (including) 5.1.3 (including)
Mysql Oracle 5.1.4 (including) 5.1.4 (including)
Mysql Oracle 5.1.6 (including) 5.1.6 (including)
Mysql Oracle 5.1.7 (including) 5.1.7 (including)
Mysql Oracle 5.1.8 (including) 5.1.8 (including)
Mysql Oracle 5.1.9 (including) 5.1.9 (including)
Mysql Oracle 5.1.10 (including) 5.1.10 (including)
Mysql Oracle 5.1.11 (including) 5.1.11 (including)
Mysql Oracle 5.1.12 (including) 5.1.12 (including)
Mysql Oracle 5.1.13 (including) 5.1.13 (including)
Mysql Oracle 5.1.14 (including) 5.1.14 (including)
Mysql Oracle 5.1.15 (including) 5.1.15 (including)
Mysql Oracle 5.1.16 (including) 5.1.16 (including)
Mysql Oracle 5.1.17 (including) 5.1.17 (including)
Mysql Oracle 5.1.18 (including) 5.1.18 (including)
Mysql Oracle 5.1.19 (including) 5.1.19 (including)
Mysql Oracle 5.1.20 (including) 5.1.20 (including)
Mysql Oracle 5.1.21 (including) 5.1.21 (including)
Mysql Oracle 5.1.22 (including) 5.1.22 (including)
Mysql Oracle 5.1.23-a (including) 5.1.23-a (including)
Mysql Oracle 5.1.24 (including) 5.1.24 (including)
Mysql Oracle 5.1.25 (including) 5.1.25 (including)
Mysql Oracle 5.1.26 (including) 5.1.26 (including)
Mysql Oracle 5.1.27 (including) 5.1.27 (including)
Mysql Oracle 5.1.28 (including) 5.1.28 (including)
Mysql Oracle 5.1.29 (including) 5.1.29 (including)
Mysql Oracle 5.1.30 (including) 5.1.30 (including)
Mysql Oracle 5.1.31-sp1 (including) 5.1.31-sp1 (including)
Mysql Oracle 5.1.33 (including) 5.1.33 (including)
Mysql Oracle 5.1.34-sp1 (including) 5.1.34-sp1 (including)
Mysql Oracle 5.1.35 (including) 5.1.35 (including)
Mysql Oracle 5.1.36 (including) 5.1.36 (including)
Mysql Oracle 5.1.37-sp1 (including) 5.1.37-sp1 (including)
Mysql Oracle 5.1.38 (including) 5.1.38 (including)
Mysql Oracle 5.1.39 (including) 5.1.39 (including)
Mysql Oracle 5.1.40 (including) 5.1.40 (including)
Mysql Oracle 5.1.40-sp1 (including) 5.1.40-sp1 (including)
Mysql Oracle 5.1.41 (including) 5.1.41 (including)
Mysql Oracle 5.1.42 (including) 5.1.42 (including)
Mysql Oracle 5.1.43 (including) 5.1.43 (including)
Mysql Oracle 5.1.43-sp1 (including) 5.1.43-sp1 (including)
Mysql Oracle 5.1.44 (including) 5.1.44 (including)
Mysql Oracle 5.1.45 (including) 5.1.45 (including)
Mysql Oracle 5.1.46 (including) 5.1.46 (including)
Mysql Oracle 5.1.46-sp1 (including) 5.1.46-sp1 (including)
Mysql Oracle 5.1.47 (including) 5.1.47 (including)
Mysql Oracle 5.1.48 (including) 5.1.48 (including)
Mysql Oracle 5.1.49 (including) 5.1.49 (including)
Mysql Oracle 5.1.49-sp1 (including) 5.1.49-sp1 (including)
Mysql Oracle 5.1.50 (including) 5.1.50 (including)
Red Hat Enterprise Linux 5 RedHat mysql-0:5.0.77-4.el5_5.4 *
Red Hat Enterprise Linux 6 RedHat mysql-0:5.1.52-1.el6_0.1 *
Mysql-5.1 Ubuntu maverick *
Mysql-5.1 Ubuntu upstream *
Mysql-cluster-7.0 Ubuntu lucid *
Mysql-cluster-7.0 Ubuntu maverick *
Mysql-cluster-7.0 Ubuntu natty *
Mysql-cluster-7.0 Ubuntu oneiric *
Mysql-dfsg-5.0 Ubuntu dapper *
Mysql-dfsg-5.0 Ubuntu hardy *
Mysql-dfsg-5.0 Ubuntu karmic *
Mysql-dfsg-5.1 Ubuntu karmic *
Mysql-dfsg-5.1 Ubuntu lucid *
Mysql-dfsg-5.1 Ubuntu upstream *

References