storage/innobase/dict/dict0crea.c in mysqld in Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (assertion failure) by modifying the (1) innodb_file_format or (2) innodb_file_per_table configuration parameters for the InnoDB storage engine, then executing a DDL statement.
CVSS Details
- CVSS 3.1 Base Score: 6.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade linux-f8-flashpluginUpgrade linux-f10-flashpluginUpgrade linux-flashplugin | Dec 10, 2025 | Nov 6, 2010 |
| Gentoo Linux | — | Upgrade dev-db/mysql. | Oct 30, 2017 | Jan 11, 2011 |
| Oracle Mysql | — | Upgrade to Oracle MySQL version 5.1.49 | Aug 29, 2012 | Jan 11, 2011 |
| Suse | — | Upgrade mysql-clientUpgrade libmysqlclient16Upgrade libmysqld-develUpgrade mysql-benchUpgrade mysql-ndb-storageUpgrade mysql-ndb-toolsUpgrade mysqlUpgrade libmysqlclient-develUpgrade libmysqlclient16-32bitUpgrade libmysqlclient_r16-32bitUpgrade mysql-debugUpgrade mysql-ndb-managementUpgrade mysql-toolsUpgrade mysql-ndb-extraUpgrade libmysqlclient_r16Upgrade mysql-test | Dec 12, 2013 | Jan 11, 2011 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub