CVE-2004-0836

Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service and possibly execute arbitrary code via a DNS response with a large address length (h_length).
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:*
cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2004-11-03 05:00

Updated : 2024-02-04 16:31


NVD link : CVE-2004-0836

Mitre link : CVE-2004-0836

CVE.ORG link : CVE-2004-0836


JSON object : View

Products Affected

debian

  • debian_linux

oracle

  • mysql
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer