Back to search
CVE-2007-6304
Published: Dec 10, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
The federated engine in MySQL 5.0.x before 5.0.51a, 5.1.x before 5.1.23, and 6.0.x before 6.0.4, when performing a certain SHOW TABLE STATUS query, allows remote MySQL servers to cause a denial of service (federated handler crash and daemon crash) via a response that lacks the minimum required number of columns.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0040
x_refsource_CONFIRM
28343
third-party-advisory
x_refsource_SECUNIA
http://lists.mysql.com/announce/502
x_refsource_CONFIRM
GLSA-200804-04
vendor-advisory
x_refsource_GENTOO
29706
third-party-advisory
x_refsource_SECUNIA
42609
vdb-entry
x_refsource_OSVDB
MDVSA-2008:028
vendor-advisory
x_refsource_MANDRIVA
MDVSA-2008:017
vendor-advisory
x_refsource_MANDRIVA
https://issues.rpath.com/browse/RPL-2187
x_refsource_CONFIRM
DSA-1451
vendor-advisory
x_refsource_DEBIAN
USN-559-1
vendor-advisory
x_refsource_UBUNTU
http://bugs.mysql.com/bug.php?id=29801
x_refsource_CONFIRM
http://dev.mysql.com/doc/refman/5.1/en/news-5-1-23.html
x_refsource_CONFIRM
ADV-2007-4198
vdb-entry
x_refsource_VUPEN
http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-52.html
x_refsource_CONFIRM
28637
third-party-advisory
x_refsource_SECUNIA
26832
vdb-entry
x_refsource_BID
1019085
vdb-entry
x_refsource_SECTRACK
http://dev.mysql.com/doc/refman/6.0/en/news-6-0-4.html
x_refsource_CONFIRM
20080205 rPSA-2008-0040-1 mysql mysql-bench mysql-server
mailing-list
x_refsource_BUGTRAQ
mysql-federated-engine-dos(38990)
vdb-entry
x_refsource_XF
28838
third-party-advisory
x_refsource_SECUNIA
28128
third-party-advisory
x_refsource_SECUNIA
28063
third-party-advisory
x_refsource_SECUNIA
SUSE-SR:2008:003
vendor-advisory
x_refsource_SUSE
28739
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now