Vulnerability Details CVE-2008-0226
Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitrary code via (1) the ProcessOldClientHello function in handshake.cpp or (2) "input_buffer& operator>>" in yassl_imp.cpp.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.919
EPSS Ranking 99.7%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2008-0226
-
cpe:2.3:a:mysql:mysql:5.0.0
-
cpe:2.3:a:mysql:mysql:5.0.1
-
cpe:2.3:a:mysql:mysql:5.0.10
-
cpe:2.3:a:mysql:mysql:5.0.15
-
cpe:2.3:a:mysql:mysql:5.0.16
-
cpe:2.3:a:mysql:mysql:5.0.17
-
cpe:2.3:a:mysql:mysql:5.0.2
-
cpe:2.3:a:mysql:mysql:5.0.20
-
cpe:2.3:a:mysql:mysql:5.0.24
-
cpe:2.3:a:mysql:mysql:5.0.3
-
cpe:2.3:a:mysql:mysql:5.0.30
-
cpe:2.3:a:mysql:mysql:5.0.36
-
cpe:2.3:a:mysql:mysql:5.0.4
-
cpe:2.3:a:mysql:mysql:5.0.44
-
cpe:2.3:a:mysql:mysql:5.0.5
-
cpe:2.3:a:mysql:mysql:5.0.54
-
cpe:2.3:a:mysql:mysql:5.0.56
-
cpe:2.3:a:mysql:mysql:5.0.60
-
cpe:2.3:a:mysql:mysql:5.0.66
-
cpe:2.3:a:mysql:mysql:5.1.5
-
cpe:2.3:a:oracle:mysql:5.0.23
-
cpe:2.3:a:oracle:mysql:5.0.25
-
cpe:2.3:a:oracle:mysql:5.0.26
-
cpe:2.3:a:oracle:mysql:5.0.28
-
cpe:2.3:a:oracle:mysql:5.0.30
-
cpe:2.3:a:oracle:mysql:5.0.32
-
cpe:2.3:a:oracle:mysql:5.0.34
-
cpe:2.3:a:oracle:mysql:5.0.36
-
cpe:2.3:a:oracle:mysql:5.0.38
-
cpe:2.3:a:oracle:mysql:5.0.40
-
cpe:2.3:a:oracle:mysql:5.0.41
-
cpe:2.3:a:oracle:mysql:5.0.42
-
cpe:2.3:a:oracle:mysql:5.0.44
-
cpe:2.3:a:oracle:mysql:5.0.45
-
cpe:2.3:a:oracle:mysql:5.0.46
-
cpe:2.3:a:oracle:mysql:5.0.48
-
cpe:2.3:a:oracle:mysql:5.0.50
-
cpe:2.3:a:oracle:mysql:5.0.51
-
cpe:2.3:a:oracle:mysql:5.0.52
-
cpe:2.3:a:oracle:mysql:5.0.56
-
cpe:2.3:a:oracle:mysql:5.0.58
-
cpe:2.3:a:oracle:mysql:5.0.60
-
cpe:2.3:a:oracle:mysql:5.0.62
-
cpe:2.3:a:oracle:mysql:5.0.64
-
cpe:2.3:a:oracle:mysql:5.0.66
-
cpe:2.3:a:oracle:mysql:5.1
-
cpe:2.3:a:oracle:mysql:5.1.1
-
cpe:2.3:a:oracle:mysql:5.1.10
-
cpe:2.3:a:oracle:mysql:5.1.11
-
cpe:2.3:a:oracle:mysql:5.1.12
-
cpe:2.3:a:oracle:mysql:5.1.13
-
cpe:2.3:a:oracle:mysql:5.1.14
-
cpe:2.3:a:oracle:mysql:5.1.15
-
cpe:2.3:a:oracle:mysql:5.1.16
-
cpe:2.3:a:oracle:mysql:5.1.17
-
cpe:2.3:a:oracle:mysql:5.1.18
-
cpe:2.3:a:oracle:mysql:5.1.19
-
cpe:2.3:a:oracle:mysql:5.1.2
-
cpe:2.3:a:oracle:mysql:5.1.20
-
cpe:2.3:a:oracle:mysql:5.1.21
-
cpe:2.3:a:oracle:mysql:5.1.22
-
cpe:2.3:a:oracle:mysql:5.1.3
-
cpe:2.3:a:oracle:mysql:5.1.4
-
cpe:2.3:a:oracle:mysql:5.1.6
-
cpe:2.3:a:oracle:mysql:5.1.7
-
cpe:2.3:a:oracle:mysql:5.1.8
-
cpe:2.3:a:oracle:mysql:5.1.9
-
-
cpe:2.3:o:apple:mac_os_x:10.5.4
-
cpe:2.3:o:canonical:ubuntu_linux:6.06
-
cpe:2.3:o:canonical:ubuntu_linux:6.10
-
cpe:2.3:o:canonical:ubuntu_linux:7.04
-
cpe:2.3:o:canonical:ubuntu_linux:7.10
-
cpe:2.3:o:debian:debian_linux:5.0