mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
138 lines
4.4 KiB
JSON
138 lines
4.4 KiB
JSON
{
|
|
"CVE_data_meta" : {
|
|
"ASSIGNER" : "cve@mitre.org",
|
|
"ID" : "CVE-2005-0710",
|
|
"STATE" : "PUBLIC"
|
|
},
|
|
"affects" : {
|
|
"vendor" : {
|
|
"vendor_data" : [
|
|
{
|
|
"product" : {
|
|
"product_data" : [
|
|
{
|
|
"product_name" : "n/a",
|
|
"version" : {
|
|
"version_data" : [
|
|
{
|
|
"version_value" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format" : "MITRE",
|
|
"data_type" : "CVE",
|
|
"data_version" : "4.0",
|
|
"description" : {
|
|
"description_data" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to bypass library path restrictions and execute arbitrary libraries by using INSERT INTO to modify the mysql.func table, which is processed by the udf_init function."
|
|
}
|
|
]
|
|
},
|
|
"problemtype" : {
|
|
"problemtype_data" : [
|
|
{
|
|
"description" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references" : {
|
|
"reference_data" : [
|
|
{
|
|
"name" : "20050310 Mysql CREATE FUNCTION mysql.func table arbitrary library injection",
|
|
"refsource" : "BUGTRAQ",
|
|
"url" : "http://marc.info/?l=bugtraq&m=111065974004648&w=2"
|
|
},
|
|
{
|
|
"name" : "20050310 Mysql CREATE FUNCTION mysql.func table arbitrary library injection",
|
|
"refsource" : "VULNWATCH",
|
|
"url" : "http://archives.neohapsis.com/archives/vulnwatch/2005-q1/0083.html"
|
|
},
|
|
{
|
|
"name" : "APPLE-SA-2005-08-15",
|
|
"refsource" : "APPLE",
|
|
"url" : "http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html"
|
|
},
|
|
{
|
|
"name" : "APPLE-SA-2005-08-17",
|
|
"refsource" : "APPLE",
|
|
"url" : "http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html"
|
|
},
|
|
{
|
|
"name" : "DSA-707",
|
|
"refsource" : "DEBIAN",
|
|
"url" : "http://www.debian.org/security/2005/dsa-707"
|
|
},
|
|
{
|
|
"name" : "GLSA-200503-19",
|
|
"refsource" : "GENTOO",
|
|
"url" : "http://www.gentoo.org/security/en/glsa/glsa-200503-19.xml"
|
|
},
|
|
{
|
|
"name" : "MDKSA-2005:060",
|
|
"refsource" : "MANDRAKE",
|
|
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2005:060"
|
|
},
|
|
{
|
|
"name" : "RHSA-2005:334",
|
|
"refsource" : "REDHAT",
|
|
"url" : "http://www.redhat.com/support/errata/RHSA-2005-334.html"
|
|
},
|
|
{
|
|
"name" : "RHSA-2005:348",
|
|
"refsource" : "REDHAT",
|
|
"url" : "http://www.redhat.com/support/errata/RHSA-2005-348.html"
|
|
},
|
|
{
|
|
"name" : "101864",
|
|
"refsource" : "SUNALERT",
|
|
"url" : "http://sunsolve.sun.com/search/document.do?assetkey=1-26-101864-1"
|
|
},
|
|
{
|
|
"name" : "SUSE-SA:2005:019",
|
|
"refsource" : "SUSE",
|
|
"url" : "http://www.novell.com/linux/security/advisories/2005_19_mysql.html"
|
|
},
|
|
{
|
|
"name" : "2005-0009",
|
|
"refsource" : "TRUSTIX",
|
|
"url" : "http://www.trustix.org/errata/2005/0009/"
|
|
},
|
|
{
|
|
"name" : "USN-96-1",
|
|
"refsource" : "UBUNTU",
|
|
"url" : "https://usn.ubuntu.com/96-1/"
|
|
},
|
|
{
|
|
"name" : "12781",
|
|
"refsource" : "BID",
|
|
"url" : "http://www.securityfocus.com/bid/12781"
|
|
},
|
|
{
|
|
"name" : "oval:org.mitre.oval:def:10180",
|
|
"refsource" : "OVAL",
|
|
"url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10180"
|
|
},
|
|
{
|
|
"name" : "mysql-udfinit-gain-access(19658)",
|
|
"refsource" : "XF",
|
|
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/19658"
|
|
}
|
|
]
|
|
}
|
|
}
|