Search CVE reports


Toggle filters

1471 – 1480 of 1528 results


CVE-2008-7247

Low priority

Some fixes available 3 of 6

sql/sql_table.cc in MySQL 5.0.x through 5.0.88, 5.1.x through 5.1.41, and 6.0 before 6.0.9-alpha, when the data home directory contains a symlink to a different filesystem, allows remote authenticated users to bypass intended...

5 affected packages

mysql-5.1, mysql-dfsg, mysql-dfsg-4.1, mysql-dfsg-5.0, mysql-dfsg-5.1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-5.1
mysql-dfsg
mysql-dfsg-4.1
mysql-dfsg-5.0
mysql-dfsg-5.1
Show less packages

CVE-2009-2942

Low priority

Some fixes available 3 of 5

The mysql-ocaml bindings 1.0.4 for MySQL do not properly support the mysql_real_escape_string function, which might allow remote attackers to leverage escaping issues involving multibyte character encodings.

1 affected package

mysql-ocaml

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-ocaml
Show less packages

CVE-2009-2446

Low priority

Some fixes available 4 of 5

Multiple format string vulnerabilities in the dispatch_command function in libmysqld/sql_parse.cc in mysqld in MySQL 4.0.0 through 5.0.83 allow remote authenticated users to cause a denial of service (daemon crash) and possibly...

3 affected packages

mysql-5.1, mysql-dfsg-5.0, mysql-dfsg-5.1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-5.1
mysql-dfsg-5.0
mysql-dfsg-5.1
Show less packages

CVE-2009-0819

Low priority
Ignored

sql/item_xmlfunc.cc in MySQL 5.1 before 5.1.32 and 6.0 before 6.0.10 allows remote authenticated users to cause a denial of service (crash) via "an XPath expression employing a scalar expression as a FilterExpr with ExtractValue()...

3 affected packages

mysql-5.1, mysql-dfsg-5.0, mysql-dfsg-5.1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-5.1
mysql-dfsg-5.0
mysql-dfsg-5.1
Show less packages

CVE-2008-2384

Medium priority
Not affected

SQL injection vulnerability in mod_auth_mysql.c in the mod-auth-mysql (aka libapache2-mod-auth-mysql) module for the Apache HTTP Server 2.x, when configured to use a multibyte character set that allows a \ (backslash) as part of...

2 affected packages

libapache-mod-auth-mysql, mod-auth-mysql

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libapache-mod-auth-mysql
mod-auth-mysql
Show less packages

CVE-2008-4456

Low priority

Some fixes available 4 of 8

Cross-site scripting (XSS) vulnerability in the command-line client in MySQL 5.0.26 through 5.0.45, and other versions including versions later than 5.0.45, when the --html option is enabled, allows attackers to inject arbitrary...

3 affected packages

mysql-dfsg-5.0, mysql-dfsg-5.1, mysql-5.1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
mysql-dfsg-5.1
mysql-5.1
Show less packages

CVE-2008-4097

Medium priority

Some fixes available 3 of 4

MySQL 5.0.51a allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM table with modified (1) DATA DIRECTORY or (2) INDEX DIRECTORY arguments that are associated with symlinks within pathnames for...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2008-4098

Medium priority

Some fixes available 4 of 5

MySQL before 5.0.67 allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM table with modified (1) DATA DIRECTORY or (2) INDEX DIRECTORY arguments that are originally associated with pathnames...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2008-3963

Medium priority

Some fixes available 3 of 4

MySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not properly handle a b'' (b single-quote single-quote) token, aka an empty bit-string literal, which allows remote attackers to cause a denial of service...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages

CVE-2008-2079

Low priority

Some fixes available 3 of 4

MySQL 4.1.x before 4.1.24, 5.0.x before 5.0.60, 5.1.x before 5.1.24, and 6.0.x before 6.0.5 allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM table with modified (1) DATA DIRECTORY or (2)...

1 affected package

mysql-dfsg-5.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-dfsg-5.0
Show less packages