CVE-2003-0780

Buffer overflow in get_salt_from_password from sql_acl.cc for MySQL 4.0.14 and earlier, and 3.23.x, allows attackers with ALTER TABLE privileges to execute arbitrary code via a long Password field.

Published : 2003-09-22 04:00 Updated : 2019-10-07 16:42

9.0
CVSS Score More info
Score 9.0 / 10
9.0
Vendor Product Version URI
Oracle Mysql 3.23 cpe:/a:oracle:mysql:3.23
Oracle Mysql 3.23.2 cpe:/a:oracle:mysql:3.23.2
Oracle Mysql 3.23.3 cpe:/a:oracle:mysql:3.23.3
Oracle Mysql 3.23.4 cpe:/a:oracle:mysql:3.23.4
Oracle Mysql 3.23.5 cpe:/a:oracle:mysql:3.23.5
Oracle Mysql 3.23.8 cpe:/a:oracle:mysql:3.23.8
Oracle Mysql 3.23.9 cpe:/a:oracle:mysql:3.23.9
Oracle Mysql 3.23.10 cpe:/a:oracle:mysql:3.23.10
Oracle Mysql 3.23.22 cpe:/a:oracle:mysql:3.23.22
Oracle Mysql 3.23.23 cpe:/a:oracle:mysql:3.23.23
Oracle Mysql 3.23.24 cpe:/a:oracle:mysql:3.23.24
Oracle Mysql 3.23.25 cpe:/a:oracle:mysql:3.23.25
Oracle Mysql 3.23.26 cpe:/a:oracle:mysql:3.23.26
Oracle Mysql 3.23.27 cpe:/a:oracle:mysql:3.23.27
Oracle Mysql 3.23.28 cpe:/a:oracle:mysql:3.23.28
Oracle Mysql 3.23.28 cpe:/a:oracle:mysql:3.23.28:gamma
Oracle Mysql 3.23.29 cpe:/a:oracle:mysql:3.23.29
Oracle Mysql 3.23.30 cpe:/a:oracle:mysql:3.23.30
Oracle Mysql 3.23.31 cpe:/a:oracle:mysql:3.23.31
Oracle Mysql 3.23.32 cpe:/a:oracle:mysql:3.23.32
Oracle Mysql 3.23.33 cpe:/a:oracle:mysql:3.23.33
Oracle Mysql 3.23.34 cpe:/a:oracle:mysql:3.23.34
Oracle Mysql 3.23.36 cpe:/a:oracle:mysql:3.23.36
Oracle Mysql 3.23.37 cpe:/a:oracle:mysql:3.23.37
Oracle Mysql 3.23.38 cpe:/a:oracle:mysql:3.23.38
Oracle Mysql 3.23.39 cpe:/a:oracle:mysql:3.23.39
Oracle Mysql 3.23.40 cpe:/a:oracle:mysql:3.23.40
Oracle Mysql 3.23.41 cpe:/a:oracle:mysql:3.23.41
Oracle Mysql 3.23.42 cpe:/a:oracle:mysql:3.23.42
Oracle Mysql 3.23.43 cpe:/a:oracle:mysql:3.23.43
Oracle Mysql 3.23.44 cpe:/a:oracle:mysql:3.23.44
Oracle Mysql 3.23.45 cpe:/a:oracle:mysql:3.23.45
Oracle Mysql 3.23.46 cpe:/a:oracle:mysql:3.23.46
Oracle Mysql 3.23.47 cpe:/a:oracle:mysql:3.23.47
Oracle Mysql 3.23.48 cpe:/a:oracle:mysql:3.23.48
Oracle Mysql 3.23.49 cpe:/a:oracle:mysql:3.23.49
Oracle Mysql 3.23.50 cpe:/a:oracle:mysql:3.23.50
Oracle Mysql 3.23.51 cpe:/a:oracle:mysql:3.23.51
Oracle Mysql 3.23.52 cpe:/a:oracle:mysql:3.23.52
Oracle Mysql 3.23.53 cpe:/a:oracle:mysql:3.23.53
Oracle Mysql 3.23.53a cpe:/a:oracle:mysql:3.23.53a
Oracle Mysql 3.23.54 cpe:/a:oracle:mysql:3.23.54
Oracle Mysql 3.23.54a cpe:/a:oracle:mysql:3.23.54a
Oracle Mysql 3.23.55 cpe:/a:oracle:mysql:3.23.55
Oracle Mysql 3.23.56 cpe:/a:oracle:mysql:3.23.56
Oracle Mysql 4.0.0 cpe:/a:oracle:mysql:4.0.0
Oracle Mysql 4.0.1 cpe:/a:oracle:mysql:4.0.1
Oracle Mysql 4.0.2 cpe:/a:oracle:mysql:4.0.2
Oracle Mysql 4.0.3 cpe:/a:oracle:mysql:4.0.3
Oracle Mysql 4.0.4 cpe:/a:oracle:mysql:4.0.4
Oracle Mysql 4.0.5 cpe:/a:oracle:mysql:4.0.5
Oracle Mysql 4.0.5a cpe:/a:oracle:mysql:4.0.5a
Oracle Mysql 4.0.6 cpe:/a:oracle:mysql:4.0.6
Oracle Mysql 4.0.7 cpe:/a:oracle:mysql:4.0.7
Oracle Mysql 4.0.7 cpe:/a:oracle:mysql:4.0.7:gamma
Oracle Mysql 4.0.8 cpe:/a:oracle:mysql:4.0.8
Oracle Mysql 4.0.8 cpe:/a:oracle:mysql:4.0.8:gamma
Oracle Mysql 4.0.9 cpe:/a:oracle:mysql:4.0.9
Oracle Mysql 4.0.9 cpe:/a:oracle:mysql:4.0.9:gamma
Oracle Mysql 4.0.10 cpe:/a:oracle:mysql:4.0.10
Oracle Mysql 4.0.11 cpe:/a:oracle:mysql:4.0.11
Oracle Mysql 4.0.11 cpe:/a:oracle:mysql:4.0.11:gamma
Oracle Mysql 4.0.12 cpe:/a:oracle:mysql:4.0.12
Oracle Mysql 4.0.13 cpe:/a:oracle:mysql:4.0.13
Oracle Mysql 4.0.14 cpe:/a:oracle:mysql:4.0.14
Conectiva Linux 7.0 cpe:/o:conectiva:linux:7.0
Conectiva Linux 9.0 cpe:/o:conectiva:linux:9.0
Mysql Mysql 4.1.0.0 cpe:/a:mysql:mysql:4.1.0.0
Conectiva Linux 8.0 cpe:/o:conectiva:linux:8.0
Mysql Mysql 4.1.0 cpe:/a:mysql:mysql:4.1.0:alpha
  1. Mysql (1) Search CVE
    1. Mysql (2) Search CVE
      1. 4.1.0.0
      2. 4.1.0
  2. Conectiva (1) Search CVE
    1. Linux (3) Search CVE
      1. 7.0
      2. 9.0
      3. 8.0
  3. Oracle (1) Search CVE
    1. Mysql (60) Search CVE
      1. 3.23
      2. 3.23.2
      3. 3.23.3
      4. 3.23.4
      5. 3.23.5
      6. 3.23.8
      7. 3.23.9
      8. 3.23.10
      9. 3.23.22
      10. 3.23.23
      11. 3.23.24
      12. 3.23.25
      13. 3.23.26
      14. 3.23.27
      15. 3.23.28
      16. 3.23.29
      17. 3.23.30
      18. 3.23.31
      19. 3.23.32
      20. 3.23.33
      21. 3.23.34
      22. 3.23.36
      23. 3.23.37
      24. 3.23.38
      25. 3.23.39
      26. 3.23.40
      27. 3.23.41
      28. 3.23.42
      29. 3.23.43
      30. 3.23.44
      31. 3.23.45
      32. 3.23.46
      33. 3.23.47
      34. 3.23.48
      35. 3.23.49
      36. 3.23.50
      37. 3.23.51
      38. 3.23.52
      39. 3.23.53
      40. 3.23.53a
      41. 3.23.54
      42. 3.23.54a
      43. 3.23.55
      44. 3.23.56
      45. 4.0.0
      46. 4.0.1
      47. 4.0.2
      48. 4.0.3
      49. 4.0.4
      50. 4.0.5
      51. 4.0.5a
      52. 4.0.6
      53. 4.0.7
      54. 4.0.8
      55. 4.0.9
      56. 4.0.10
      57. 4.0.11
      58. 4.0.12
      59. 4.0.13
      60. 4.0.14

CWE

There is no CWE for this CVE.

History of changes

Date Event
2019-10-07 16:42
2003-09-22 04:00

New CVE