MySQL before 5.0.67 allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM table with modified (1) DATA DIRECTORY or (2) INDEX DIRECTORY arguments that are originally associated with pathnames without symlinks, and that can point to tables created at a future time at which a pathname is modified to contain a symlink to a subdirectory of the MySQL home data directory. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-4097.
CVSS Details
- CVSS 3.1 Base Score: 5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade mysql-serverUpgrade mysql-develUpgrade mysql-benchUpgrade mysql | Dec 1, 2016 | Sep 18, 2008 |
| Freebsd | — | Upgrade mysql-server | Dec 10, 2025 | Dec 30, 2008 |
| Gentoo Linux | — | Upgrade dev-db/mysql. | Oct 30, 2017 | Sep 18, 2008 |
| Oracle Solaris | — | Upgrade database/mysql-51/library to version 5.1.37-0.175.1.10.0.5.0 on Solaris 11.1Upgrade database/mysql-51 to version 5.1.37-0.175.1.10.0.5.0 on Solaris 11.1Upgrade database/mysql-51/tests to version 5.1.37-0.175.1.10.0.5.0 on Solaris 11.1 | May 29, 2017 | Sep 18, 2008 |
| Suse | — | Upgrade mysql-sharedUpgrade mysql-develUpgrade suse-releaseUpgrade libmysqlclient-develUpgrade mysql-MaxUpgrade libmysqlclient_r15Upgrade mysql-toolsUpgrade mysql-benchUpgrade mysql-clientUpgrade mysql-shared-x86Upgrade mysql-debugUpgrade libmysqlclient15-64bitUpgrade mysql-shared-64bitUpgrade libmysqlclient15-32bitUpgrade libmysqlclient15Upgrade libmysqlclient_r15-64bitUpgrade libmysqlclient_r15-32bitUpgrade mysql-shared-32bitUpgrade mysql | Feb 17, 2015 | Sep 18, 2008 |
| Ubuntu | — | Upgrade mysql-server-5.0Upgrade mysql-server-5.1 | Nov 8, 2024 | Sep 18, 2008 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub