Vulnerabilities
Vulnerable Software
Oracle:  >> Mysql  >> 5.0.38  Security Vulnerabilities
Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitrary code via (1) the ProcessOldClientHello function in handshake.cpp or (2) "input_buffer& operator>>" in yassl_imp.cpp.
CVSS Score
7.5
EPSS Score
0.921
Published
2008-01-10
The in_decimal::set function in item_cmpfunc.cc in MySQL before 5.0.40, and 5.1 before 5.1.18-beta, allows context-dependent attackers to cause a denial of service (crash) via a crafted IF clause that results in a divide-by-zero error and a NULL pointer dereference.
CVSS Score
4.0
EPSS Score
0.033
Published
2007-05-10


Contact Us

Shodan ® - All rights reserved