MySQL Community Server before 5.0.45 allows remote attackers to cause a denial of service (daemon crash) via a malformed password packet in the connection protocol.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade mysql-server | Dec 10, 2025 | Jan 11, 2009 |
| Gentoo Linux | — | Upgrade dev-db/mysql. | Oct 30, 2017 | Jul 15, 2007 |
| Oracle_linux | — | Upgrade mysql-benchUpgrade mysql-testUpgrade mysqlUpgrade mysql-serverUpgrade mysql-devel | Oct 16, 2024 | Jul 15, 2007 |
| Suse | — | Upgrade mysqlUpgrade mysql-MaxUpgrade mysql-benchUpgrade mysql-shared-64bitUpgrade suse-releaseUpgrade mysql-develUpgrade mysql-clientUpgrade mysql-sharedUpgrade mysql-shared-32bitUpgrade mysql-debug | Feb 17, 2015 | Jul 15, 2007 |
| Ubuntu | — | Upgrade mysql-server-5.0 | Nov 8, 2024 | Jul 15, 2007 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub