Stefano Di Paola discovered an information leak in the login packet
parser. By sending a specially crafted malformed login packet, a
remote attacker could exploit this to read a random piece of memory,
which could potentially reveal sensitive data. (CVE-2006-1516)
Stefano Di Paola also found a similar information leak in the parser
for the COM_TABLE_DUMP request. (CVE-2006-1517)
Posted Jun 29, 2006 9:27 UTC (Thu) by mjcox@redhat.com (subscriber, #31775)
[Link]
These were fixed in Red Hat Enterprise Linux 4, RHSA-2006:0544 on June 9. These issues did not affect the version of MySQL shipped with Enterprise Linux 2.1 or 3.