Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

DB:MYSQL:UNIQ-SET-COL-JOIN-DOS

Severity

Minor

Recommended

No

Category

DB

Keywords

Oracle MySQL Database Unique SET Column Join Denial of Service

Release Date

2010/10/25

Update Number

1798

Supported Platforms

idp-4.0.110090709+, isg-3.1.134269+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

DB: Oracle MySQL Database Unique SET Column Join Denial of Service


This signature detects attempts to exploit a known denial-of-service vulnerability in Oracle MySQL database server. It is due to an error while handling joins involving a table with a unique SET column. Remote authenticated attackers can exploit this by sending malicious command packets to the server that causes a join with aforementioned condition. A successful attack can cause the target server to terminate, denying service to all users until the server is restarted.

Extended Description

Oracle MySQL 5.1 before 5.1.49 and 5.0 before 5.0.92 allows remote authenticated users to cause a denial of service (mysqld daemon crash) via a join query that uses a table with a unique SET column.

Affected Products

  • Mysql mysql 5.0.0
  • Mysql mysql 5.0.1
  • Mysql mysql 5.0.10
  • Mysql mysql 5.0.15
  • Mysql mysql 5.0.16
  • Mysql mysql 5.0.17
  • Mysql mysql 5.0.2
  • Mysql mysql 5.0.20
  • Mysql mysql 5.0.24
  • Mysql mysql 5.0.30
  • Mysql mysql 5.0.36
  • Mysql mysql 5.0.44
  • Mysql mysql 5.0.54
  • Mysql mysql 5.0.56
  • Mysql mysql 5.0.60
  • Mysql mysql 5.0.66
  • Mysql mysql 5.0.72
  • Mysql mysql 5.0.74
  • Mysql mysql 5.0.82
  • Mysql mysql 5.0.84
  • Mysql mysql 5.0.87
  • Mysql mysql 5.0.91
  • Mysql mysql 5.1.23
  • Mysql mysql 5.1.31
  • Mysql mysql 5.1.32
  • Mysql mysql 5.1.34
  • Mysql mysql 5.1.37
  • Mysql mysql 5.1.48
  • Oracle mysql 5.0.28
  • Oracle mysql 5.0.30
  • Oracle mysql 5.0.32
  • Oracle mysql 5.0.34
  • Oracle mysql 5.0.36
  • Oracle mysql 5.0.38
  • Oracle mysql 5.0.40
  • Oracle mysql 5.0.41
  • Oracle mysql 5.0.42
  • Oracle mysql 5.0.44
  • Oracle mysql 5.0.45
  • Oracle mysql 5.0.46
  • Oracle mysql 5.0.48
  • Oracle mysql 5.0.50
  • Oracle mysql 5.0.51
  • Oracle mysql 5.0.52
  • Oracle mysql 5.0.56
  • Oracle mysql 5.0.58
  • Oracle mysql 5.0.62
  • Oracle mysql 5.0.64
  • Oracle mysql 5.0.66
  • Oracle mysql 5.0.67
  • Oracle mysql 5.0.68
  • Oracle mysql 5.0.70
  • Oracle mysql 5.0.72
  • Oracle mysql 5.0.74
  • Oracle mysql 5.0.75
  • Oracle mysql 5.0.76
  • Oracle mysql 5.0.77
  • Oracle mysql 5.0.78
  • Oracle mysql 5.0.79
  • Oracle mysql 5.0.80
  • Oracle mysql 5.0.81
  • Oracle mysql 5.0.82
  • Oracle mysql 5.0.83
  • Oracle mysql 5.0.84
  • Oracle mysql 5.0.85
  • Oracle mysql 5.0.86
  • Oracle mysql 5.0.87
  • Oracle mysql 5.0.88
  • Oracle mysql 5.0.89
  • Oracle mysql 5.0.90
  • Oracle mysql 5.1.1
  • Oracle mysql 5.1.10
  • Oracle mysql 5.1.11
  • Oracle mysql 5.1.12
  • Oracle mysql 5.1.13
  • Oracle mysql 5.1.14
  • Oracle mysql 5.1.15
  • Oracle mysql 5.1.16
  • Oracle mysql 5.1.17
  • Oracle mysql 5.1.18
  • Oracle mysql 5.1.19
  • Oracle mysql 5.1.2
  • Oracle mysql 5.1.20
  • Oracle mysql 5.1.21
  • Oracle mysql 5.1.22
  • Oracle mysql 5.1.23
  • Oracle mysql 5.1.24
  • Oracle mysql 5.1.25
  • Oracle mysql 5.1.26
  • Oracle mysql 5.1.27
  • Oracle mysql 5.1.28
  • Oracle mysql 5.1.29
  • Oracle mysql 5.1.3
  • Oracle mysql 5.1.30
  • Oracle mysql 5.1.31
  • Oracle mysql 5.1.33
  • Oracle mysql 5.1.34
  • Oracle mysql 5.1.35
  • Oracle mysql 5.1.36
  • Oracle mysql 5.1.37
  • Oracle mysql 5.1.38
  • Oracle mysql 5.1.39
  • Oracle mysql 5.1.4
  • Oracle mysql 5.1.40
  • Oracle mysql 5.1.41
  • Oracle mysql 5.1.42
  • Oracle mysql 5.1.43
  • Oracle mysql 5.1.44
  • Oracle mysql 5.1.45
  • Oracle mysql 5.1.46
  • Oracle mysql 5.1.47

References

  • BugTraq: 42646
  • CVE: CVE-2010-3677

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out