CVE-2008-7247
published 2009-11-30CVE-2008-7247: sql/sql_table.cc in MySQL 5.0.x through 5.0.88, 5.1.x through 5.1.41, and 6.0 before 6.0.9-alpha, when the data home directory contains a symlink to a…
PriorityP429medium6CVSS 2.0
AVNACMAuSCPIPAP
EPSS
1.77%
75.6th percentile
sql/sql_table.cc in MySQL 5.0.x through 5.0.88, 5.1.x through 5.1.41, and 6.0 before 6.0.9-alpha, when the data home directory contains a symlink to a different filesystem, allows remote authenticated users to bypass intended access restrictions by calling CREATE TABLE with a (1) DATA DIRECTORY or (2) INDEX DIRECTORY argument referring to a subdirectory that requires following this symlink.
Affected
110 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mysql | mysql | <= 5.1.45 | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
| mysql | mysql | — | — |
CVSS provenance
nvdv2.06.0MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:P
vendor_redhat6.0MEDIUM
vendor_ubuntu4.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
MySQL vulnerabilities
vendor_ubuntu·2012-03-12
CVE-2007-5925 MySQL vulnerabilities
Title: MySQL vulnerabilities
Summary: Several security issues were fixed in MySQL.
Multiple security issues were discovered in MySQL and this update includes
new upstream MySQL versions to fix these issues.
MySQL has been updated to 5.1.61 in Ubuntu 10.04 LTS, Ubuntu 10.10,
Ubuntu 11.04 and Ubuntu 11.10. Ubuntu 8.04 LTS has been updated to
MySQL 5.0.95.
In addition to security fixes, the updated packages contain bug fixes, new
features, and possibly incompatible changes.
Please see the following for more information:
http://dev.mysql.com/doc/refman/5.1/en/news-5-1-x.html
http://dev.mysql.com/doc/refman/5.0/en/news-5-0-x.html
http://www.oracle.com/technetwork/topics/security/cpujan2012-366304.html
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
MySQL vulnerabilities
vendor_ubuntu·2010-02-10·CVSS 4.6
CVE-2008-7247 [MEDIUM] MySQL vulnerabilities
Title: MySQL vulnerabilities
Summary: MySQL vulnerabilities
It was discovered that MySQL could be made to overwrite existing table
files in the data directory. An authenticated user could use the DATA
DIRECTORY and INDEX DIRECTORY options to possibly bypass privilege checks.
This update alters table creation behaviour by disallowing the use of the
MySQL data directory in DATA DIRECTORY and INDEX DIRECTORY options. This
issue only affected Ubuntu 8.10. (CVE-2008-4098)
It was discovered that MySQL contained a cross-site scripting vulnerability
in the command-line client when the --html option is enabled. An attacker
could place arbitrary web script or html in a database cell, which would
then get placed in the html document output by the command-line tool. This
issue only affected Ubuntu
Red Hat
MySQL: Intended access restrictions bypass
vendor_redhat·2009-11-04·CVSS 6.0
CVE-2008-7247 [MEDIUM] MySQL: Intended access restrictions bypass
MySQL: Intended access restrictions bypass
sql/sql_table.cc in MySQL 5.0.x through 5.0.88, 5.1.x through 5.1.41, and 6.0 before 6.0.9-alpha, when the data home directory contains a symlink to a different filesystem, allows remote authenticated users to bypass intended access restrictions by calling CREATE TABLE with a (1) DATA DIRECTORY or (2) INDEX DIRECTORY argument referring to a subdirectory that requires following this symlink.
Statement: Not vulnerable. This issue did not affect the versions of mysql as shipped with Red Hat Enterprise Linux 3, 4, or 5.
Red Hat
mysql: table destruction via DATA/INDEX DIRECTORY directives using symlinks
vendor_redhat·2008-11-22·CVSS 4.6
CVE-2010-1626 [MEDIUM] mysql: table destruction via DATA/INDEX DIRECTORY directives using symlinks
mysql: table destruction via DATA/INDEX DIRECTORY directives using symlinks
MySQL before 5.1.46 allows local users to delete the data and index files of another user's MyISAM table via a symlink attack in conjunction with the DROP TABLE command, a different vulnerability than CVE-2008-4098 and CVE-2008-7247.
Package: mysql (Red Hat Enterprise Linux 4) - Will not fix
GHSA
GHSA-3qjw-qphv-c728: sql/sql_table
ghsa_unreviewed·2022-05-13
CVE-2008-7247 [MEDIUM] CWE-59 GHSA-3qjw-qphv-c728: sql/sql_table
sql/sql_table.cc in MySQL 5.0.x through 5.0.88, 5.1.x through 5.1.41, and 6.0 before 6.0.9-alpha, when the data home directory contains a symlink to a different filesystem, allows remote authenticated users to bypass intended access restrictions by calling CREATE TABLE with a (1) DATA DIRECTORY or (2) INDEX DIRECTORY argument referring to a subdirectory that requires following this symlink.
GHSA
GHSA-6c9m-2jhw-8335: MySQL before 5
ghsa_unreviewed·2022-05-13·CVSS 4.6
CVE-2010-1626 [MEDIUM] CWE-59 GHSA-6c9m-2jhw-8335: MySQL before 5
MySQL before 5.1.46 allows local users to delete the data and index files of another user's MyISAM table via a symlink attack in conjunction with the DROP TABLE command, a different vulnerability than CVE-2008-4098 and CVE-2008-7247.
No detection rules found.
No public exploits indexed.
http://bugs.mysql.com/bug.php?id=39277http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.htmlhttp://lists.mysql.com/commits/59711http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-11/msg00005.htmlhttp://marc.info/?l=oss-security&m=125908040022018&w=2http://secunia.com/advisories/38517http://support.apple.com/kb/HT4077http://ubuntu.com/usn/usn-897-1http://www.mandriva.com/security/advisories?name=MDVSA-2010:044http://www.securityfocus.com/bid/38043http://www.ubuntu.com/usn/USN-1397-1http://www.vupen.com/english/advisories/2010/1107https://bugzilla.redhat.com/show_bug.cgi?id=543619http://bugs.mysql.com/bug.php?id=39277http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.htmlhttp://lists.mysql.com/commits/59711http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-11/msg00005.htmlhttp://marc.info/?l=oss-security&m=125908040022018&w=2http://secunia.com/advisories/38517http://support.apple.com/kb/HT4077http://ubuntu.com/usn/usn-897-1http://www.mandriva.com/security/advisories?name=MDVSA-2010:044http://www.securityfocus.com/bid/38043http://www.ubuntu.com/usn/USN-1397-1http://www.vupen.com/english/advisories/2010/1107https://bugzilla.redhat.com/show_bug.cgi?id=543619
2009-11-30
Published