Version: 2008
  • On TechRepublic: 10 cool USB flash drive tricks

May 4, 2006 8:30 AM PDT

MySQL issues security fix

  • 2 comments
MySQL has issued a security update to address flaws in its client-server protocol that could allow a malicious attacker to exploit buffer overflow vulnerabilities and gain access to sensitive information.

The open-source database company released its MySQL version 5.0.21 update earlier this week. The update is designed to address security flaws in database server software versions 5.1.9; 5.0.20; 4.1.18; 4.0.26 and prior versions.

Security researcher FrSIRT rates the flaws as "moderate" risk. MySQL version 5.0, which was released late last year, is in widespread use.

FrSIRT noted that one of the three flaws involves a buffer overflow flaw, which could be exploited by attackers to execute arbitrary commands from a user's system.

The two other flaws can be exploited when a validation error occurs when inputting information. The vulnerabilities could allow attackers to disclose portions of the system's memory in the error messages.

See more CNET content tagged:
MySQL, flaw, attacker, buffer-overflow, open source

Add a Comment (Log in or register)
not MS???
by gggg sssss May 4, 2006 3:13 PM PDT
You mean some else has buffer overflow problems? Its not just an MS thing? Say it aint so, Joe
Reply to this comment
not MS???
by gggg sssss May 4, 2006 3:13 PM PDT
You mean some else has buffer overflow problems? Its not just an MS thing? Say it aint so, Joe
Reply to this comment
advertisement

Latest tech news headlines

RSS Feeds

Add headlines from CNET News to your homepage or feedreader.

More feeds available in our RSS feed index.

Markets

Market news, charts, SEC filings, and more

Related quotes

Dow Jones Industrials (0.22%) 22.75 10,388.90
S&P 500 (0.55%) 6.06 1,105.98
NASDAQ (0.98%) 21.21 2,194.35
CNET TECH (0.29%) 4.71 1,602.07
  Symbol Lookup
advertisement

Inside CNET News

Scroll Left Scroll Right