Description
Unknown vulnerability in MySQL 3.23.58 and earlier, when a local user has privileges for a database whose name includes a "_" (underscore), grants privileges to other databases that have similar names, which can allow the user to conduct unauthorized activities.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2004-0955 | Unknown vulnerability in MySQL 3.23.58 and earlier, when a local user has privileges for a database whose name includes a "_" (underscore), grants privileges to other databases that have similar names, which can allow the user to conduct unauthorized activities. |
Ubuntu USN |
USN-32-1 | mysql vulnerabilities |
Ubuntu USN |
USN-109-1 | MySQL vulnerability |
References
History
No history.
Subscriptions
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-08T00:31:48.222Z
Reserved: 2004-10-13T00:00:00.000Z
Link: CVE-2004-0957
No data.
Status : Modified
Published: 2005-02-09T05:00:00.000
Modified: 2026-04-16T00:27:16.627
Link: CVE-2004-0957
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN