Bug 201904 (CVE-2006-3469) - CVE-2006-3469 mysql server DoS
Summary: CVE-2006-3469 mysql server DoS
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2006-3469
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
low
Target Milestone: ---
Assignee: Tom Lane
QA Contact: David Lawrence
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2006-08-09 18:26 UTC by Josh Bressers
Modified: 2021-11-12 19:33 UTC (History)
3 users (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2008-07-25 07:51:01 UTC
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2008:0768 0 normal SHIPPED_LIVE Moderate: mysql security, bug fix, and enhancement update 2008-07-24 17:12:22 UTC

Description Josh Bressers 2006-08-09 18:26:17 UTC
mysql server DoS

A bug was found in the mysql server which can allow an authenticated
remote users cause a temporary DoS on the server.  All clients
connected to the server will be disconnected, they will have to
reconnect to the sql server.

Affects 4.1 before 4.1.21 and 5.0 (doesn't affect 3.x)

The upstream bug is here:
http://bugs.mysql.com/bug.php?id=20729

Comment 1 Tom Lane 2006-08-09 20:35:05 UTC
Per discussion, the odds of real applications being vulnerable to this seem pretty low, so we're not going 
to turn the RHEL4 mysql package just for this --- putting it in the queue for next update.

Comment 2 Daniel Bartlett 2007-06-20 10:57:03 UTC
This is more of a concern in a shared hosting environment. Any user who has a
mysql account can cause the mysqld process to crash. I bump this bug for more
attention.

Regards,
Daniel.

Comment 7 Mark J. Cox 2007-08-21 11:05:13 UTC
moving to security response parent bug, should this deferred issue get picked up
for a future update we'll create tracking bugs with appropriate flags set at
that time.

Comment 12 Tomas Hoger 2008-05-02 11:53:57 UTC
Reproducers from the upstream bug:

select date_format('%d%s', 1);
select date_format('%Y-%m-%d %H:%i:%s', 1151414896);

Upstream commit:

http://lists.mysql.com/commits/9048


Comment 15 Red Hat Product Security 2008-07-25 07:51:01 UTC
This issue was addressed in:

Red Hat Enterprise Linux:
  http://rhn.redhat.com/errata/RHSA-2008-0768.html




Note You need to log in before you can comment on or make changes to this bug.