漏洞信息详情
MySQL MERGE特权撤消绕过漏洞
- CNNVD编号:CNNVD-200608-143
- 危害等级: 低危
- CVE编号:
CVE-2006-4031
- 漏洞类型:
其他
- 发布时间:
2006-08-09
- 威胁类型:
本地
- 更新时间:
2019-10-24
- 厂 商:
mysql - 漏洞来源:
The vendor reporte… -
漏洞简介
MySQL4.1.21之前的4.1版本及5.0.24之前的5.0版本中,本地用户可通过事先创建的MERGE表对一个表进行访问,甚至是在用户对原表的特权已被撤消后,这样就违返了要达到的安全策略。
漏洞公告
Apple Mac OS X Server 10.4
-
Apple Mac OS X v10.4.9
Apple Mac OS X Server 10.4.1
-
Apple Mac OS X v10.4.9
Apple Mac OS X Server 10.4.3
-
Apple Mac OS X v10.4.9
Apple Mac OS X Server 10.4.4
-
Apple Mac OS X v10.4.9
Apple Mac OS X Server 10.4.5
-
Apple Mac OS X v10.4.9
Apple Mac OS X Server 10.4.7
-
Apple Mac OS X v10.4.9
Apple Mac OS X Server 10.4.8
-
Apple Mac OS X v10.4.9
MySQL AB MySQL 4.1.12
-
Mandriva lib64mysql14-4.1.12-4.6.20060mdk.x86_64.rpmMandriva Linux 2006.0:
-
Mandriva lib64mysql14-devel-4.1.12-4.6.20060mdk.x86_64.rpmMandriva Linux 2006.0:
-
Mandriva libmysql14-4.1.12-4.6.20060mdk.i586.rpmMandriva Linux 2006.0:
-
Mandriva libmysql14-devel-4.1.12-4.6.20060mdk.i586.rpmMandriva Linux 2006.0:
-
Mandriva MySQL-4.1.12-4.6.20060mdk.i586.rpmMandriva Linux 2006.0:
-
Mandriva MySQL-4.1.12-4.6.20060mdk.x86_64.rpmMandriva Linux 2006.0:
-
Mandriva MySQL-bench-4.1.12-4.6.20060mdk.i586.rpmMandriva Linux 2006.0:
-
Mandriva MySQL-bench-4.1.12-4.6.20060mdk.x86_64.rpmMandriva Linux 2006.0:
-
Mandriva MySQL-client-4.1.12-4.6.20060mdk.i586.rpmMandriva Linux 2006.0:
-
Mandriva MySQL-client-4.1.12-4.6.20060mdk.x86_64.rpmMandriva Linux 2006.0:
-
Mandriva MySQL-c
参考网址
来源:SECUNIA
链接:http://secunia.com/advisories/21685
来源:SECUNIA
链接:http://secunia.com/advisories/24479
来源:REDHAT
链接:http://www.redhat.com/support/errata/RHSA-2008-0768.html
来源:SECUNIA
链接:http://secunia.com/advisories/21627
来源:SECTRACK
链接:http://securitytracker.com/id?1016617
来源:CONFIRM
链接:http://dev.mysql.com/doc/refman/5.0/en/news-5-0-24.html
来源:SECUNIA
链接:http://secunia.com/advisories/30351
来源:APPLE
链接:http://lists.apple.com/archives/security-announce/2007/Mar/msg00002.html
来源:SECUNIA
链接:http://secunia.com/advisories/22080
来源:MANDRIVA
链接:http://www.mandriva.com/security/advisories?name=MDKSA-2006:149
来源:REDHAT
链接:http://www.redhat.com/support/errata/RHSA-2007-0083.html
来源:CERT
链接:http://www.us-cert.gov/cas/techalerts/TA07-072A.html
来源:SECUNIA
链接:http://secunia.com/advisories/31226
来源:UBUNTU
链接:http://www.ubuntu.com/usn/usn-338-1
来源:CONFIRM
链接:http://dev.mysql.com/doc/refman/4.1/en/news-4-1-21.html
来源:VUPEN
链接:http://www.vupen.com/english/advisories/2006/3079
来源:SECUNIA
链接:http://secunia.com/advisories/21770
来源:SECUNIA
链接:http://secunia.com/advisories/21259
来源:REDHAT
链接:http://www.redhat.com/support/errata/RHSA-2008-0364.html
来源:BID
链接:https://www.securityfocus.com/bid/19279
来源:MISC
链接:http://bugs.mysql.com/bug.php?id=15195
来源:CONFIRM
链接:https://issues.rpath.com/browse/RPL-568
来源:CONFIRM
链接:http://docs.info.apple.com/article.html?artnum=305214
来源:VUPEN
链接:http://www.vupen.com/english/advisories/2007/0930
来源:SUSE
链接:http://www.novell.com/linux/security/advisories/2006_23_sr.html
来源:OVAL
链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10468
来源:SECUNIA