CVE-2006-7232
published 2006-12-31CVE-2006-7232: sql_select.cc in MySQL 5.0.x before 5.0.32 and 5.1.x before 5.1.14 allows remote authenticated users to cause a denial of service (crash) via an EXPLAIN SELECT…
PriorityP49low3.5CVSS 2.0
AVNACMAuSCNINAP
EPSS
1.97%
78.5th percentile
sql_select.cc in MySQL 5.0.x before 5.0.32 and 5.1.x before 5.1.14 allows remote authenticated users to cause a denial of service (crash) via an EXPLAIN SELECT FROM on the INFORMATION_SCHEMA table, as originally demonstrated using ORDER BY.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| mysql | mysql | >= 5.0 < 5.0.32 | 5.0.32 |
| mysql | mysql | >= 5.1 < 5.1.14 | 5.1.14 |
CVSS provenance
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:N/I:N/A:P
vendor_redhat3.5LOW
vendor_ubuntu3.5LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
MySQL regression
vendor_ubuntu·2008-04-02·CVSS 3.5
CVE-2007-2692 [LOW] MySQL regression
Title: MySQL regression
Summary: MySQL regression
USN-588-1 fixed vulnerabilities in MySQL. In fixing CVE-2007-2692 for
Ubuntu 6.06, additional improvements were made to make privilege checks
more restictive. As a result, an upstream bug was exposed which could
cause operations on tables or views in a different database to fail. This
update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Masaaki Hirose discovered that MySQL could be made to dereference
a NULL pointer. An authenticated user could cause a denial of service
(application crash) via an EXPLAIN SELECT FROM on the INFORMATION_SCHEMA
table. This issue only affects Ubuntu 6.06 and 6.10. (CVE-2006-7232)
Alexander Nozdrin discovered that MySQL did not restore database access
privileges when ret
Ubuntu
MySQL vulnerabilities
vendor_ubuntu·2008-03-19·CVSS 3.5
CVE-2008-0226 [LOW] MySQL vulnerabilities
Title: MySQL vulnerabilities
Summary: MySQL vulnerabilities
Masaaki Hirose discovered that MySQL could be made to dereference
a NULL pointer. An authenticated user could cause a denial of service
(application crash) via an EXPLAIN SELECT FROM on the INFORMATION_SCHEMA
table. This issue only affects Ubuntu 6.06 and 6.10. (CVE-2006-7232)
Alexander Nozdrin discovered that MySQL did not restore database access
privileges when returning from SQL SECURITY INVOKER stored routines. An
authenticated user could exploit this to gain privileges. This issue
does not affect Ubuntu 7.10. (CVE-2007-2692)
Martin Friebe discovered that MySQL did not properly update the DEFINER
value of an altered view. An authenticated user could use CREATE SQL
SECURITY DEFINER VIEW and ALTER VIEW statements to gain pri
Red Hat
mysql: daemon crash via EXPLAIN on queries on information schema
vendor_redhat·2006-09-16·CVSS 3.5
CVE-2006-7232 [LOW] mysql: daemon crash via EXPLAIN on queries on information schema
mysql: daemon crash via EXPLAIN on queries on information schema
sql_select.cc in MySQL 5.0.x before 5.0.32 and 5.1.x before 5.1.14 allows remote authenticated users to cause a denial of service (crash) via an EXPLAIN SELECT FROM on the INFORMATION_SCHEMA table, as originally demonstrated using ORDER BY.
Statement: This issue did not affect the MySQL packages as shipped in Red Hat Enterprise Linux 2.1, 3, and 4 as they did not support INFORMATION_SCHEMA, introduced in MySQL version 5.
The MySQL packages as shipped in Red Hat Application Stack v1 and v2 are based on upstream version which has the fix included.
GHSA
GHSA-r8rq-fj6m-6p56: sql_select
ghsa_unreviewed·2022-05-01
CVE-2006-7232 [LOW] CWE-89 GHSA-r8rq-fj6m-6p56: sql_select
sql_select.cc in MySQL 5.0.x before 5.0.32 and 5.1.x before 5.1.14 allows remote authenticated users to cause a denial of service (crash) via an EXPLAIN SELECT FROM on the INFORMATION_SCHEMA table, as originally demonstrated using ORDER BY.
No detection rules found.
No public exploits indexed.
http://bugs.mysql.com/bug.php?id=22413http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-32.htmlhttp://dev.mysql.com/doc/refman/5.1/en/news-5-1-14.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-08/msg00006.htmlhttp://secunia.com/advisories/29443http://secunia.com/advisories/30351http://secunia.com/advisories/31687http://www.redhat.com/support/errata/RHSA-2008-0364.htmlhttp://www.securityfocus.com/bid/28351http://www.ubuntu.com/usn/usn-588-1https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11720http://bugs.mysql.com/bug.php?id=22413http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-32.htmlhttp://dev.mysql.com/doc/refman/5.1/en/news-5-1-14.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-08/msg00006.htmlhttp://secunia.com/advisories/29443http://secunia.com/advisories/30351http://secunia.com/advisories/31687http://www.redhat.com/support/errata/RHSA-2008-0364.htmlhttp://www.securityfocus.com/bid/28351http://www.ubuntu.com/usn/usn-588-1https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11720
2006-12-31
Published