CVE-2005-2558
published 2005-08-16CVE-2005-2558: Stack-based buffer overflow in the init_syms function in MySQL 4.0 before 4.0.25, 4.1 before 4.1.13, and 5.0 before 5.0.7-beta allows remote authenticated…
PriorityP424medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
2.33%
81.6th percentile
Stack-based buffer overflow in the init_syms function in MySQL 4.0 before 4.0.25, 4.1 before 4.1.13, and 5.0 before 5.0.7-beta allows remote authenticated users who can create user-defined functions to execute arbitrary code via a long function_name field.
Affected
34 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
| oracle | mysql | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
MySQL 4.1 vulnerability
vendor_ubuntu·2005-12-05
CVE-2005-2558 MySQL 4.1 vulnerability
Title: MySQL 4.1 vulnerability
Summary: MySQL 4.1 vulnerability
USN-180-1 fixed a vulnerability in the mysql-server package (which
ships version 4.0). Version 4.1 is vulnerable against the same flaw.
Please note that this package is not officially supported in Ubuntu
5.10.
Origial advisory:
"AppSecInc Team SHATTER discovered a buffer overflow in the "CREATE
FUNCTION" statement. By specifying a specially crafted long function
name, a local or remote attacker with function creation privileges
could crash the server or execute arbitrary code with server
privileges.
However, the right to create function is usually not granted to
untrusted users."
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
MySQL vulnerability
vendor_ubuntu·2005-09-12
CVE-2005-2558 MySQL vulnerability
Title: MySQL vulnerability
Summary: MySQL vulnerability
AppSecInc Team SHATTER discovered a buffer overflow in the "CREATE
FUNCTION" statement. By specifying a specially crafted long function
name, a local or remote attacker with function creation privileges
could crash the server or execute arbitrary code with server
privileges.
However, the right to create function is usually not granted to
untrusted users.
Instructions: In general, a standard system update will make all the necessary changes.
GHSA
GHSA-qxmx-9x27-fp8j: Stack-based buffer overflow in the init_syms function in MySQL 4
ghsa_unreviewed·2022-05-03
CVE-2005-2558 [MEDIUM] GHSA-qxmx-9x27-fp8j: Stack-based buffer overflow in the init_syms function in MySQL 4
Stack-based buffer overflow in the init_syms function in MySQL 4.0 before 4.0.25, 4.1 before 4.1.13, and 5.0 before 5.0.7-beta allows remote authenticated users who can create user-defined functions to execute arbitrary code via a long function_name field.
No detection rules found.
No public exploits indexed.
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2006.18.1/SCOSA-2006.18.1.txthttp://lists.grok.org.uk/pipermail/full-disclosure/2005-August/035845.htmlhttp://marc.info/?l=bugtraq&m=112354450412427&w=2http://secunia.com/advisories/17027http://secunia.com/advisories/20381http://secunia.com/advisories/29847http://sunsolve.sun.com/search/document.do?assetkey=1-26-236703-1http://www.appsecinc.com/resources/alerts/mysql/2005-002.htmlhttp://www.debian.org/security/2005/dsa-829http://www.debian.org/security/2005/dsa-831http://www.debian.org/security/2005/dsa-833http://www.mandriva.com/security/advisories?name=MDKSA-2005:163http://www.novell.com/linux/security/advisories/2005_21_sr.htmlhttp://www.redhat.com/archives/fedora-legacy-announce/2006-January/msg00005.htmlhttp://www.securityfocus.com/bid/14509http://www.vupen.com/english/advisories/2008/1326/referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/21737https://www.ubuntu.com/usn/usn-180-1/https://www.ubuntu.com/usn/usn-180-2/ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2006.18.1/SCOSA-2006.18.1.txthttp://lists.grok.org.uk/pipermail/full-disclosure/2005-August/035845.htmlhttp://marc.info/?l=bugtraq&m=112354450412427&w=2http://secunia.com/advisories/17027http://secunia.com/advisories/20381http://secunia.com/advisories/29847http://sunsolve.sun.com/search/document.do?assetkey=1-26-236703-1http://www.appsecinc.com/resources/alerts/mysql/2005-002.htmlhttp://www.debian.org/security/2005/dsa-829http://www.debian.org/security/2005/dsa-831http://www.debian.org/security/2005/dsa-833http://www.mandriva.com/security/advisories?name=MDKSA-2005:163http://www.novell.com/linux/security/advisories/2005_21_sr.htmlhttp://www.redhat.com/archives/fedora-legacy-announce/2006-January/msg00005.htmlhttp://www.securityfocus.com/bid/14509http://www.vupen.com/english/advisories/2008/1326/referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/21737https://www.ubuntu.com/usn/usn-180-1/https://www.ubuntu.com/usn/usn-180-2/
2005-08-16
Published