Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2009-2446Use of Externally-Controlled Format String in Mysql

Severity
8.5HIGHNVD
EPSS
7.3%
top 8.33%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedJul 13
Latest updateFeb 5

Description

Multiple format string vulnerabilities in the dispatch_command function in libmysqld/sql_parse.cc in mysqld in MySQL 4.0.0 through 5.0.83 allow remote authenticated users to cause a denial of service (daemon crash) and possibly have unspecified other impact via format string specifiers in a database name in a (1) COM_CREATE_DB or (2) COM_DROP_DB request. NOTE: some of these details are obtained from third party information.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 6.8 | Impact: 10.0

Affected Packages2 packages

NVDmysql/mysql32 versions+31
NVDoracle/mysql79 versions+78

Patches

🔴Vulnerability Details

1
GHSA
GHSA-q8wr-mc75-9wjp: Multiple format string vulnerabilities in the dispatch_command function in libmysqld/sql_parse2022-05-02

💥Exploits & PoCs

1
Exploit-DB
MySQL 5.0.75 - 'sql_parse.cc' Multiple Format String Vulnerabilities2009-06-08

📋Vendor Advisories

3
Ubuntu
MySQL vulnerabilities2012-03-12
Ubuntu
MySQL vulnerabilities2010-02-10
Red Hat
MySQL: Format string vulnerability by manipulation with database instances (crash)2009-07-09

📄Research Papers

3
arXiv
Threat Modelling in Internet of Things (IoT) Environment Using Dynamic Attack Graphs2024-02-05
arXiv
Stochastic Simulation Techniques for Inference and Sensitivity Analysis of Bayesian Attack Graphs2021-03-18
arXiv
Cyclic Bayesian Attack Graphs: A Systematic Computational Approach2020-05-13

💬Community

1
Bugzilla
CVE-2009-2446 MySQL: Format string vulnerability by manipulation with database instances (crash)2009-07-13
CVE-2009-2446 — Mysql vulnerability | cvebase