CVE-2004-0836
published 2004-11-03CVE-2004-0836: Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service…
PriorityP335critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
9.80%
95.0th percentile
Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service and possibly execute arbitrary code via a DNS response with a large address length (h_length).
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| oracle | mysql | >= 3.20 < 3.23.49 | 3.23.49 |
| oracle | mysql | >= 4.0.0 < 4.0.21 | 4.0.21 |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
mysql vulnerabilities
vendor_ubuntu·2004-11-25
CVE-2004-0837 mysql vulnerabilities
Title: mysql vulnerabilities
Summary: mysql vulnerabilities
Several vulnerabilities have been discovered in the MySQL database
server.
Lukasz Wojtow discovered a potential buffer overflow in the function
mysql_real_connect(). A malicious name server could send specially
crafted DNS packages which might result in execution of arbitrary code
with the database server's privileges. However, it is believed that
this bug cannot be exploited with the C Standard library (glibc) that
Ubuntu uses. (CAN-2004-0836).
Dean Ellis noticed a flaw that allows an authorized MySQL user to
cause a denial of service (crash or hang) via concurrent execution of
certain statements (ALTER TABLE ... UNION=, FLUSH TABLES) on tables of
type MERGE (CAN-2004-0837)
Some query strings containing a double quote (like
Red Hat
security flaw
vendor_redhat·2004-06-04·CVSS 10.0
CVE-2004-0836 [CRITICAL] security flaw
security flaw
Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service and possibly execute arbitrary code via a DNS response with a large address length (h_length).
GHSA
GHSA-6f26-27c8-j6cv: Buffer overflow in the mysql_real_connect function in MySQL 4
ghsa_unreviewed·2022-04-29
CVE-2004-0836 [HIGH] CWE-119 GHSA-6f26-27c8-j6cv: Buffer overflow in the mysql_real_connect function in MySQL 4
Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service and possibly execute arbitrary code via a DNS response with a large address length (h_length).
No detection rules found.
No public exploits indexed.
http://bugs.mysql.com/bug.php?id=4017http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000892http://lists.mysql.com/internals/14726http://marc.info/?l=bugtraq&m=110140517515735&w=2http://secunia.com/advisories/12305/http://www.ciac.org/ciac/bulletins/p-018.shtmlhttp://www.debian.org/security/2004/dsa-562http://www.gentoo.org/security/en/glsa/glsa-200410-22.xmlhttp://www.redhat.com/support/errata/RHSA-2004-597.htmlhttp://www.redhat.com/support/errata/RHSA-2004-611.htmlhttp://www.securityfocus.com/bid/10981http://www.trustix.org/errata/2004/0054/https://exchange.xforce.ibmcloud.com/vulnerabilities/17047http://bugs.mysql.com/bug.php?id=4017http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000892http://lists.mysql.com/internals/14726http://marc.info/?l=bugtraq&m=110140517515735&w=2http://secunia.com/advisories/12305/http://www.ciac.org/ciac/bulletins/p-018.shtmlhttp://www.debian.org/security/2004/dsa-562http://www.gentoo.org/security/en/glsa/glsa-200410-22.xmlhttp://www.redhat.com/support/errata/RHSA-2004-597.htmlhttp://www.redhat.com/support/errata/RHSA-2004-611.htmlhttp://www.securityfocus.com/bid/10981http://www.trustix.org/errata/2004/0054/https://exchange.xforce.ibmcloud.com/vulnerabilities/17047
2004-11-03
Published