MariaDB CVE-2012-5579 Buffer Overflow Vulnerability
BID:56750
Info
MariaDB CVE-2012-5579 Buffer Overflow Vulnerability
| Bugtraq ID: | 56750 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2012-5579 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 29 2012 12:00AM |
| Updated: | Nov 29 2012 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Monty Program Ab MariaDB 5.1.53 Monty Program Ab MariaDB 5.1.51 Monty Program Ab MariaDB 5.1.50 |
| Not Vulnerable: | |
Discussion
RETIRED: MariaDB CVE-2012-5579 Buffer Overflow Vulnerability
MariaDB is prone to a buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized buffer.
An attacker could exploit this issue to execute arbitrary code with the privileges of the mysqld process. Failed exploit attempts will likely result in denial-of-service conditions.
MariaDB versions prior to 5.1.66, 5.2.13, 5.3.11, and 5.5.28a are vulnerable.
Note: This BID is being retired as a duplicate of BID 56769 (Oracle MySQL and MariaDB 'acl_get()' Buffer Overflow Vulnerability).
MariaDB is prone to a buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized buffer.
An attacker could exploit this issue to execute arbitrary code with the privileges of the mysqld process. Failed exploit attempts will likely result in denial-of-service conditions.
MariaDB versions prior to 5.1.66, 5.2.13, 5.3.11, and 5.5.28a are vulnerable.
Note: This BID is being retired as a duplicate of BID 56769 (Oracle MySQL and MariaDB 'acl_get()' Buffer Overflow Vulnerability).
Exploit / POC
MariaDB CVE-2012-5579 Buffer Overflow Vulnerability
Currently we are not aware of any publicly available exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Currently we are not aware of any publicly available exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Solution / Fix
MariaDB CVE-2012-5579 Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
RETIRED: MariaDB CVE-2012-5579 Buffer Overflow Vulnerability
References:
References: