First published: Thu Jan 10 2008(Updated: )
Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitrary code via (1) the ProcessOldClientHello function in handshake.cpp or (2) "input_buffer& operator>>" in yassl_imp.cpp.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Yassl Yassl | <=1.7.5 | |
MySQL MySQL | =5.0.5 | |
MySQL MySQL | =5.0.10 | |
MySQL MySQL | =5.0.54 | |
MySQL MySQL | =5.0.0 | |
MySQL MySQL | =5.0.15 | |
MySQL MySQL | =5.0.17 | |
MySQL MySQL | =5.0.3 | |
MySQL MySQL | =5.0.44 | |
MySQL MySQL | =5.0.66 | |
MySQL MySQL | =5.0.56 | |
MySQL MySQL | =5.0.60 | |
MySQL MySQL | =5.0.24 | |
MySQL MySQL | =5.0.2 | |
MySQL MySQL | =5.0.30 | |
MySQL MySQL | =5.0.20 | |
MySQL MySQL | =5.0.1 | |
MySQL MySQL | =5.0.4 | |
MySQL MySQL | =5.0.36 | |
MySQL MySQL | =5.0.16 | |
MySQL MySQL | =5.1.5 | |
Oracle MySQL | =5.0.48 | |
Oracle MySQL | =5.0.50-sp1 | |
Oracle MySQL | =5.0.50 | |
Oracle MySQL | =5.0.51 | |
Oracle MySQL | =5.0.23 | |
Oracle MySQL | =5.0.25 | |
Oracle MySQL | =5.0.26 | |
Oracle MySQL | =5.0.28 | |
Oracle MySQL | =5.0.30-sp1 | |
Oracle MySQL | =5.0.32 | |
Oracle MySQL | =5.0.34 | |
Oracle MySQL | =5.0.36-sp1 | |
Oracle MySQL | =5.0.38 | |
Oracle MySQL | =5.0.40 | |
Oracle MySQL | =5.0.41 | |
Oracle MySQL | =5.0.42 | |
Oracle MySQL | =5.0.44-sp1 | |
Oracle MySQL | =5.0.45 | |
Oracle MySQL | =5.0.46 | |
Oracle MySQL | =5.0.52 | |
Oracle MySQL | =5.0.56-sp1 | |
Oracle MySQL | =5.0.58 | |
Oracle MySQL | =5.0.62 | |
Oracle MySQL | =5.0.64 | |
Oracle MySQL | =5.1 | |
Oracle MySQL | =5.1.1 | |
Oracle MySQL | =5.1.2 | |
Oracle MySQL | =5.1.3 | |
Oracle MySQL | =5.1.4 | |
Oracle MySQL | =5.1.6 | |
Oracle MySQL | =5.1.7 | |
Oracle MySQL | =5.1.8 | |
Oracle MySQL | =5.1.9 | |
Oracle MySQL | =5.1.10 | |
Oracle MySQL | =5.1.11 | |
Oracle MySQL | =5.1.12 | |
Oracle MySQL | =5.1.13 | |
Oracle MySQL | =5.1.14 | |
Oracle MySQL | =5.1.15 | |
Oracle MySQL | =5.1.16 | |
Oracle MySQL | =5.1.17 | |
Oracle MySQL | =5.1.18 | |
Oracle MySQL | =5.1.19 | |
Oracle MySQL | =5.1.20 | |
Oracle MySQL | =5.1.21 | |
Oracle MySQL | =5.1.22 | |
Oracle MySQL | =5.0.60-sp1 | |
Oracle MySQL | =5.0.66-sp1 | |
Apple Mac OS X | =10.5.4 | |
Debian Debian Linux | =5.0 | |
Canonical Ubuntu Linux | =6.06 | |
Canonical Ubuntu Linux | =7.04 | |
Canonical Ubuntu Linux | =7.10 | |
Canonical Ubuntu Linux | =6.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.