CVE-2010-3679 PUBLISHED CVSS 4 MEDIUM

Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (mysqld daemon crash) via certain arguments to the BINLOG command, which triggers an access of uninitialized memory, as demonstrated by valgrind.

EPSS 4.55% · 89.1th percentile

Risk Scores

CVSS v2.0
4
EPSS Score
4.55%
89.1th percentile

Affected Products

VendorProductVersions
oraclemysql5.1.48, 5.1.43, 5.1.43
n/an/an/a
mysqlmysql5.1.23, 5.1.31, 5.1.5

Timeline

References

Open in Interactive Console →