Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2005-0083

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2005-0083
Last Modified 07 Mar 2011 09:19:30
Published 02 May 2005 12:00:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2005-0083

Summary

MySQL MaxDB 7.5.00 for Windows, and possibly earlier versions and other platforms, allows remote attackers to cause a denial of service (application crash) via invalid parameters to the (1) DBMCli_String::ReallocString, (2) DBMCli_String::operator, (3) DBMCli_Buffer::ForceResize, (4) DBMCli_Wizard::InstallDatabase, (5) DBMCli_Devspaces::Complete, (6) DBMWeb_TemplateWizard::askForWriteCountStep5, or (7) DBMWeb_DBMWeb::wizardDB functions, which triggers a null dereference.

Vulnerable Systems

Application

  • Mysql Maxdb 7.5.00


References

XF - maxdb-null-pointer-dos(19687)

IDEFENSE - 20050314 MySQL MaxDB Web Agent Multiple Denial of Service Vulnerabilities


Last Updated: 27 May 2016 10:39:39