Back to Database
Status published
Low
CVE-2004-0381
mysqlbug in MySQL allows local users to overwrite arbitrary files...
Vulnerability Description
mysqlbug in MySQL allows local users to overwrite arbitrary files via a symlink attack on the failed-mysql-bugreport temporary file.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2004-0381
Credits & Attribution
No credits recorded in the NVD database.
References
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11557
- http://www.securityfocus.com/bid/9976
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15617
- http://www.debian.org/security/2004/dsa-483
- http://security.gentoo.org/glsa/glsa-200405-20.xml
- http://www.mandriva.com/security/advisories?name=MDKSA-2004:034
- http://www.redhat.com/support/errata/RHSA-2004-597.html
- http://www.ciac.org/ciac/bulletins/p-018.shtml
- http://marc.info/?l=bugtraq&m=108206802810402&w=2
- http://www.redhat.com/support/errata/RHSA-2004-569.html
- http://marc.info/?l=bugtraq&m=108023246916294&w=2
More from mysql
View All →CVE-2013-1492
Buffer overflow in yaSSL, as used in MySQL 5.1.x before...
High
7.5
CVE-2012-2749
MySQL 5.1.x before 5.1.63 and 5.5.x before 5.5.24 allows remote...
Medium
4
CVE-2012-2102
MySQL 5.1.x before 5.1.62 and 5.5.x before 5.5.22 allows remote...
Low
3.5
CVE-2012-1696
Unspecified vulnerability in the MySQL Server component in Oracle MySQL...
Medium
4
CVE-2012-0583
Unspecified vulnerability in the MySQL Server component in Oracle MySQL...
Medium
4
Affected Vendor
mysql
View all reports →Affected Software
mysql
Vulnerable Versions:
4.1.0, 3.20.32a, 3.22.26, 3.22.27, 3.22.28, 3.22.29, 3.22.30, 3.22.32, 3.23.2, 3.23.3, 3.23.5, 3.23.8, 3.23.9, 3.23.10, 3.23.22, 3.23.23, 3.23.24, 3.23.25, 3.23.26, 3.23.27, 3.23.28, 3.23.29, 3.23.30, 3.23.31, 3.23.32, 3.23.33, 3.23.34, 3.23.36, 3.23.37, 3.23.38, 3.23.39, 3.23.40, 3.23.41, 3.23.42, 3.23.43, 3.23.44, 3.23.45, 3.23.46, 3.23.47, 3.23.48, 3.23.49, 3.23.50, 3.23.51, 3.23.52, 3.23.53, 3.23.53a, 3.23.54, 3.23.54a, 3.23.55, 3.23.56, 3.23.58, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.5, 4.0.5a, 4.0.6, 4.0.7, 4.0.8, 4.0.9, 4.0.10, 4.0.11, 4.0.12, 4.0.13, 4.0.14, 4.0.15, 4.0.18
Timeline
Official Publish:
April 6th, 2004
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.