Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2012-2102

Overview

Vulnerability Score 3.5 3.5
CVE Id CVE-2012-2102
Last Modified 20 Feb 2014 11:50:35
Published 16 Aug 2012 08:55:03
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity MEDIUM
Authentication SINGLE_INSTANCE

CVE-2012-2102

Summary

MySQL 5.1.x before 5.1.62 and 5.5.x before 5.5.22 allows remote authenticated users to cause a denial of service (assertion failure and mysqld abort) by deleting a record and using HANDLER READ NEXT.

Vulnerable Systems

Application

  • Mysql 5.1

  • Mysql 5.1.1

  • Mysql 5.1.10

  • Mysql 5.1.11

  • Mysql 5.1.12

  • Mysql 5.1.13

  • Mysql 5.1.14

  • Mysql 5.1.15

  • Mysql 5.1.16

  • Mysql 5.1.17

  • Mysql 5.1.18

  • Mysql 5.1.19

  • Mysql 5.1.2

  • Mysql 5.1.20

  • Mysql 5.1.21

  • Mysql 5.1.22

  • Mysql 5.1.23

  • Mysql 5.1.23 Bk

  • Mysql 5.1.23a

  • Mysql 5.1.24

  • Mysql 5.1.25

  • Mysql 5.1.26

  • Mysql 5.1.27

  • Mysql 5.1.28

  • Mysql 5.1.29

  • Mysql 5.1.3

  • Mysql 5.1.30

  • Mysql 5.1.31

  • Mysql 5.1.32

  • Mysql 5.1.32-bzr

  • Mysql 5.1.33

  • Mysql 5.1.34

  • Mysql 5.1.35

  • Mysql 5.1.36

  • Mysql 5.1.37

  • Mysql 5.1.38

  • Mysql 5.1.39

  • Mysql 5.1.4

  • Mysql 5.1.40

  • Mysql 5.1.41

  • Mysql 5.1.42

  • Mysql 5.1.43

  • Mysql 5.1.44

  • Mysql 5.1.45

  • Mysql 5.1.46

  • Mysql 5.1.47

  • Mysql 5.1.48

  • Mysql 5.1.49

  • Mysql 5.1.5

  • Mysql 5.1.50

  • Mysql 5.1.5a

  • Mysql 5.1.6

  • Mysql 5.1.7

  • Mysql 5.1.8

  • Mysql 5.1.9

  • Mysql 5.5.0

  • Mysql 5.5.1

  • Mysql 5.5.2

  • Mysql 5.5.3

  • Mysql 5.5.4

  • Mysql 5.5.5

  • Mysql 5.5.6

  • Mysql 5.5.7

  • Mysql 5.5.8

  • Mysql 5.5.9

  • Oracle Mysql 5.1.51

  • Oracle Mysql 5.1.52

  • Oracle Mysql 5.1.53

  • Oracle Mysql 5.1.54

  • Oracle Mysql 5.1.55

  • Oracle Mysql 5.1.56

  • Oracle Mysql 5.1.57

  • Oracle Mysql 5.1.58

  • Oracle Mysql 5.1.59

  • Oracle Mysql 5.1.60

  • Oracle Mysql 5.1.61

  • Oracle Mysql 5.5.10

  • Oracle Mysql 5.5.11

  • Oracle Mysql 5.5.12

  • Oracle Mysql 5.5.13

  • Oracle Mysql 5.5.14

  • Oracle Mysql 5.5.15

  • Oracle Mysql 5.5.16

  • Oracle Mysql 5.5.17

  • Oracle Mysql 5.5.18

  • Oracle Mysql 5.5.19

  • Oracle Mysql 5.5.20

  • Oracle Mysql 5.5.21


References

MLIST - [oss-security] 20120413 Re: CVE request: mysql: Server crash on HANDLER READ NEXT after DELETE

MISC - http://eromang.zataz.com/2012/04/10/oracle-mysql-innodb-bugs-13510739-and-63775-dos-demo/

CONFIRM - http://dev.mysql.com/doc/refman/5.5/en/news-5-5-22.html

CONFIRM - http://dev.mysql.com/doc/refman/5.1/en/news-5-1-62.html

MISC - http://bazaar.launchpad.net/~mysql/mysql-server/5.5/revision/3097.15.15

BID - 52931

GENTOO - GLSA-201308-06

SECUNIA - 53372


Last Updated: 27 May 2016 10:49:40