Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Mandriva: Updated MySQL packages fix multiple

BugsAlert Home > Mandriva: Updated MySQL packages fix multiple
 
 

LinuxSecurity.com: The mysql_change_db() function in MySQL 5.0.x before 5.0.40 did not restore THD::db_access privileges when returning from SQL SECURITY INVOKER stored routines, which allowed remote authenticated users to gain privileges (CVE-2007-2692).




Original Source: http://www.linuxsecurity.com/content/view/133919?rdf

Learn more about Mandriva: Updated MySQL packages fix multiple
 
Tags: mandriva updated mysql packages fix multiple

Related Items

      HP OpenView Network Node Manager Code EXecution Vulnerabilities

      CVE-2008-5553 (internet_explorer)

      CVE-2007-6425 (HP-UX)

      Red Hat update for libvorbis

      FrSIRT - nfs-utils TCP Wrappers Netgroup Security Bypass Vulnerability

      CVE-2008-0739 (CandyPress Store)

      FrSIRT - Slackware Security Update Fixes Libxml2 Integer Overflow Vulnerabilities

 

Pixel