LWN.net Logo

mysql: code execution

Package(s):mysql-5.1 CVE #(s):CVE-2012-5611
Created:December 4, 2012 Updated:February 10, 2013
Description: From the CVE entry:

Stack-based buffer overflow in MySQL 5.5.19, 5.1.53, and possibly other versions, and MariaDB 5.5.2.x before 5.5.28a, 5.3.x before 5.3.11, 5.2.x before 5.2.13 and 5.1.x before 5.1.66, allows remote authenticated users to execute arbitrary code via a long argument to the GRANT FILE command.

Alerts:
Debian DSA-2581-1 2012-12-04
Mageia MGASA-2012-0349 2012-12-07
Red Hat RHSA-2012:1551-01 2012-12-07
CentOS CESA-2012:1551 2012-12-07
Scientific Linux SL-mysq-20121207 2012-12-07
Mandriva MDVSA-2012:178 2012-12-09
Oracle ELSA-2012-1551 2012-12-07
Ubuntu USN-1658-1 2012-12-10
Fedora FEDORA-2012-19833 2012-12-15
Fedora FEDORA-2012-19823 2012-12-21
openSUSE openSUSE-SU-2013:0011-1 2013-01-07
openSUSE openSUSE-SU-2013:0014-1 2013-01-07
openSUSE openSUSE-SU-2013:0013-1 2013-01-07
Ubuntu USN-1703-1 2013-01-22
Red Hat RHSA-2013:0180-01 2013-01-22
CentOS CESA-2013:0180 2013-01-22
Oracle ELSA-2013-0180 2013-01-22
openSUSE openSUSE-SU-2013:0135-1 2013-01-23
openSUSE openSUSE-SU-2013:0156-1 2013-01-23
Scientific Linux SL-mysq-20130123 2013-01-23
Mandriva MDVSA-2013:007 2013-02-05
Mandriva MDVSA-2013:008 2013-02-06
Mageia MGASA-2013-0046 2013-02-09
SUSE SUSE-SU-2013:0262-1 2013-02-09

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds