Back to Database
Status published
Medium
CVE-2006-1518
Buffer overflow in the open_table function in sql_base.cc in MySQL...
Vulnerability Description
Buffer overflow in the open_table function in sql_base.cc in MySQL 5.0.x up to 5.0.20 might allow remote attackers to execute arbitrary code via crafted COM_TABLE_DUMP packets with invalid length values.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-1518
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.securityfocus.com/archive/1/432734/100/0/threaded
- http://secunia.com/advisories/19929
- http://www.wisec.it/vulns.php?page=8
- http://www.debian.org/security/2006/dsa-1079
- http://www.vupen.com/english/advisories/2006/1633
- http://lists.suse.com/archive/suse-security-announce/2006-Jun/0011.html
- http://securityreason.com/securityalert/839
- http://www.novell.com/linux/security/advisories/2006-06-02.html
- http://www.securityfocus.com/bid/17780
- http://dev.mysql.com/doc/refman/5.0/en/news-5-0-21.html
- http://secunia.com/advisories/20241
- http://secunia.com/advisories/20762
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26232
- http://secunia.com/advisories/20333
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=365939
- http://securitytracker.com/id?1016016
- http://www.debian.org/security/2006/dsa-1071
- http://secunia.com/advisories/20253
- http://secunia.com/advisories/20457
- http://www.debian.org/security/2006/dsa-1073
- http://www.kb.cert.org/vuls/id/602457
More from mysql
View All →CVE-2013-1492
Buffer overflow in yaSSL, as used in MySQL 5.1.x before...
High
7.5
CVE-2012-2749
MySQL 5.1.x before 5.1.63 and 5.5.x before 5.5.24 allows remote...
Medium
4
CVE-2012-2102
MySQL 5.1.x before 5.1.62 and 5.5.x before 5.5.22 allows remote...
Low
3.5
CVE-2012-1696
Unspecified vulnerability in the MySQL Server component in Oracle MySQL...
Medium
4
CVE-2012-0583
Unspecified vulnerability in the MySQL Server component in Oracle MySQL...
Medium
4
Affected Vendor
mysql
View all reports →Affected Software
mysql
Vulnerable Versions:
5.0.1, 5.0.2, 5.0.3, 5.0.4, 5.0.5, 5.0.10, 5.0.15, 5.0.16, 5.0.17, 5.0.20, 5.0.0, 5.0.6, 5.0.7, 5.0.8, 5.0.9, 5.0.11, 5.0.12, 5.0.13, 5.0.14, 5.0.18, 5.0.19
Timeline
Official Publish:
May 5th, 2006
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.