Lucene search

K
cve[email protected]CVE-2010-3682
HistoryJan 11, 2011 - 8:00 p.m.

CVE-2010-3682

2011-01-1120:00:01
web.nvd.nist.gov
173
oracle
mysql
cve-2010-3682
security
denial of service
nvd

4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:N/I:N/A:P

5 Medium

AI Score

Confidence

High

0.029 Low

EPSS

Percentile

90.8%

Oracle MySQL 5.1 before 5.1.49 and 5.0 before 5.0.92 allows remote authenticated users to cause a denial of service (mysqld daemon crash) by using EXPLAIN with crafted “SELECT … UNION … ORDER BY (SELECT … WHERE …)” statements, which triggers a NULL pointer dereference in the Item_singlerow_subselect::store function.

Affected configurations

NVD
Node
mysqlmysqlRange5.1.48
OR
mysqlmysqlMatch5.1.23
OR
mysqlmysqlMatch5.1.31
OR
mysqlmysqlMatch5.1.32
OR
mysqlmysqlMatch5.1.34
OR
mysqlmysqlMatch5.1.37
OR
oraclemysqlMatch5.1.1
OR
oraclemysqlMatch5.1.2
OR
oraclemysqlMatch5.1.3
OR
oraclemysqlMatch5.1.4
OR
oraclemysqlMatch5.1.10
OR
oraclemysqlMatch5.1.11
OR
oraclemysqlMatch5.1.12
OR
oraclemysqlMatch5.1.13
OR
oraclemysqlMatch5.1.14
OR
oraclemysqlMatch5.1.15
OR
oraclemysqlMatch5.1.16
OR
oraclemysqlMatch5.1.17
OR
oraclemysqlMatch5.1.18
OR
oraclemysqlMatch5.1.19
OR
oraclemysqlMatch5.1.20
OR
oraclemysqlMatch5.1.21
OR
oraclemysqlMatch5.1.22
OR
oraclemysqlMatch5.1.23a
OR
oraclemysqlMatch5.1.24
OR
oraclemysqlMatch5.1.25
OR
oraclemysqlMatch5.1.26
OR
oraclemysqlMatch5.1.27
OR
oraclemysqlMatch5.1.28
OR
oraclemysqlMatch5.1.29
OR
oraclemysqlMatch5.1.30
OR
oraclemysqlMatch5.1.31sp1
OR
oraclemysqlMatch5.1.33
OR
oraclemysqlMatch5.1.34sp1
OR
oraclemysqlMatch5.1.35
OR
oraclemysqlMatch5.1.36
OR
oraclemysqlMatch5.1.37sp1
OR
oraclemysqlMatch5.1.38
OR
oraclemysqlMatch5.1.39
OR
oraclemysqlMatch5.1.40
OR
oraclemysqlMatch5.1.40sp1
OR
oraclemysqlMatch5.1.41
OR
oraclemysqlMatch5.1.42
OR
oraclemysqlMatch5.1.43
OR
oraclemysqlMatch5.1.43sp1
OR
oraclemysqlMatch5.1.44
OR
oraclemysqlMatch5.1.45
OR
oraclemysqlMatch5.1.46
OR
oraclemysqlMatch5.1.46sp1
OR
oraclemysqlMatch5.1.47
Node
mysqlmysqlRange5.0.91
OR
mysqlmysqlMatch5.0.0
OR
mysqlmysqlMatch5.0.1
OR
mysqlmysqlMatch5.0.2
OR
mysqlmysqlMatch5.0.10
OR
mysqlmysqlMatch5.0.15
OR
mysqlmysqlMatch5.0.16
OR
mysqlmysqlMatch5.0.17
OR
mysqlmysqlMatch5.0.20
OR
mysqlmysqlMatch5.0.24
OR
mysqlmysqlMatch5.0.30
OR
mysqlmysqlMatch5.0.36
OR
mysqlmysqlMatch5.0.44
OR
mysqlmysqlMatch5.0.54
OR
mysqlmysqlMatch5.0.56
OR
mysqlmysqlMatch5.0.60
OR
mysqlmysqlMatch5.0.66
OR
mysqlmysqlMatch5.0.72
OR
mysqlmysqlMatch5.0.74
OR
mysqlmysqlMatch5.0.82
OR
mysqlmysqlMatch5.0.84
OR
mysqlmysqlMatch5.0.87
OR
oraclemysqlMatch5.0.28
OR
oraclemysqlMatch5.0.30sp1
OR
oraclemysqlMatch5.0.32
OR
oraclemysqlMatch5.0.34
OR
oraclemysqlMatch5.0.36sp1
OR
oraclemysqlMatch5.0.38
OR
oraclemysqlMatch5.0.40
OR
oraclemysqlMatch5.0.41
OR
oraclemysqlMatch5.0.42
OR
oraclemysqlMatch5.0.44sp1
OR
oraclemysqlMatch5.0.45
OR
oraclemysqlMatch5.0.46
OR
oraclemysqlMatch5.0.48
OR
oraclemysqlMatch5.0.50
OR
oraclemysqlMatch5.0.51a
OR
oraclemysqlMatch5.0.51b
OR
oraclemysqlMatch5.0.52
OR
oraclemysqlMatch5.0.56sp1
OR
oraclemysqlMatch5.0.58
OR
oraclemysqlMatch5.0.62
OR
oraclemysqlMatch5.0.64
OR
oraclemysqlMatch5.0.66a
OR
oraclemysqlMatch5.0.66sp1
OR
oraclemysqlMatch5.0.67
OR
oraclemysqlMatch5.0.68
OR
oraclemysqlMatch5.0.70
OR
oraclemysqlMatch5.0.72sp1
OR
oraclemysqlMatch5.0.74sp1
OR
oraclemysqlMatch5.0.75
OR
oraclemysqlMatch5.0.76
OR
oraclemysqlMatch5.0.77
OR
oraclemysqlMatch5.0.78
OR
oraclemysqlMatch5.0.79
OR
oraclemysqlMatch5.0.80
OR
oraclemysqlMatch5.0.81
OR
oraclemysqlMatch5.0.82sp1
OR
oraclemysqlMatch5.0.83
OR
oraclemysqlMatch5.0.84sp1
OR
oraclemysqlMatch5.0.85
OR
oraclemysqlMatch5.0.86
OR
oraclemysqlMatch5.0.87sp1
OR
oraclemysqlMatch5.0.88
OR
oraclemysqlMatch5.0.89
OR
oraclemysqlMatch5.0.90

References

4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:N/I:N/A:P

5 Medium

AI Score

Confidence

High

0.029 Low

EPSS

Percentile

90.8%