4
CVSSv2

CVE-2010-3683

Published: 11/01/2011 Updated: 17/12/2019
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 405
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

Oracle MySQL 5.1 prior to 5.1.49 and 5.5 prior to 5.5.5 sends an OK packet when a LOAD DATA INFILE request generates SQL errors, which allows remote authenticated users to cause a denial of service (mysqld daemon crash) via a crafted request.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

oracle mysql 5.1.46

mysql mysql 5.1.31

mysql mysql 5.1.34

oracle mysql 5.1.35

oracle mysql 5.1.41

mysql mysql 5.1.23

mysql mysql 5.1.5

oracle mysql 5.1.8

oracle mysql 5.1.13

oracle mysql 5.1.16

oracle mysql 5.1.30

oracle mysql 5.1.18

oracle mysql 5.1.27

oracle mysql 5.1.37

oracle mysql 5.1.47

oracle mysql 5.1.23

oracle mysql 5.1.36

oracle mysql 5.1.48

oracle mysql 5.1.6

oracle mysql 5.1.3

oracle mysql 5.1.14

oracle mysql 5.1.11

oracle mysql 5.1.10

oracle mysql 5.1

oracle mysql 5.1.19

oracle mysql 5.1.20

oracle mysql 5.1.40

oracle mysql 5.1.31

oracle mysql 5.1.33

mysql mysql 5.1.32

oracle mysql 5.1.43

oracle mysql 5.1.44

oracle mysql 5.1.39

oracle mysql 5.1.7

oracle mysql 5.1.45

oracle mysql 5.1.2

oracle mysql 5.1.15

oracle mysql 5.1.21

oracle mysql 5.1.22

oracle mysql 5.1.26

oracle mysql 5.1.25

oracle mysql 5.1.42

mysql mysql 5.1.37

oracle mysql 5.1.38

oracle mysql 5.1.4

oracle mysql 5.1.9

oracle mysql 5.1.12

oracle mysql 5.1.17

oracle mysql 5.1.1

oracle mysql 5.1.28

oracle mysql 5.1.29

oracle mysql 5.1.34

oracle mysql 5.1.24

oracle mysql 5.5.0

oracle mysql 5.5.1

oracle mysql 5.5.2

oracle mysql 5.5.3

oracle mysql 5.5.4

Vendor Advisories

It was discovered that MySQL incorrectly handled certain requests with the UPGRADE DATA DIRECTORY NAME command An authenticated user could exploit this to make MySQL crash, causing a denial of service This issue only affected Ubuntu 910 and 1004 LTS (CVE-2010-2008) ...

Exploits

source: wwwsecurityfocuscom/bid/42625/info MySQL is prone to a denial-of-service vulnerability An attacker can exploit this issue to crash the database, denying access to legitimate users This issue affects versions prior to MySQL 5149 NOTE: This issue was previously covered in BID 42594 (Oracle MySQL Prior to 5149 Multiple Deni ...