REDHAT-BUG-628660: Low severity MySQL mysql vulnerability
A denial of service flaw was found in the way MySQL processed multiple parallel connections changing InnoDB storage engine configuration parameters (innodbfileformat and innodbfilepertable) and simultaneously issuing data definition language (DDL) statemens. A remote, authenticated MySQL user could use this flaw to cause mysqld daemon abort (assertion failure).
References: [1] http://secunia.com/advisories/41048/ [2] http://dev.mysql.com/doc/refman/5.1/en/news-5-1-49.html
Upstream bug report: [3] http://bugs.mysql.com/bug.php?id=55039
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-628660?
The severity of REDHAT-BUG-628660 is classified as a denial of service vulnerability.
How does REDHAT-BUG-628660 affect MySQL users?
REDHAT-BUG-628660 affects MySQL users by potentially causing a service disruption when certain configuration parameters are changed during simultaneous DDL operations.
How do I fix REDHAT-BUG-628660?
To fix REDHAT-BUG-628660, it is recommended to upgrade to a MySQL version later than 5.1.49 that addresses this denial of service issue.
Who is affected by REDHAT-BUG-628660?
Authenticated remote MySQL users are affected by REDHAT-BUG-628660 due to the vulnerability in how MySQL processes certain operations.
What versions of MySQL are impacted by REDHAT-BUG-628660?
MySQL versions up to and including 5.1.49 are impacted by REDHAT-BUG-628660.