CVE-2007-5969
MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4, when a table relies on symlinks created through explicit DATA DIRECTORY and INDEX DIRECTORY options, allows…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 14.3%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4, when a table relies on symlinks created through explicit DATA DIRECTORY and INDEX DIRECTORY options, allows remote authenticated users to overwrite system table information and gain privileges via a RENAME TABLE statement that changes the symlink to point to an existing file.
- CVSS 2.0
- 7.1 HIGHAV:N/AC:H/Au:S/C:C/I:C/A:C
- EPSS
- 14.26% probability · 96th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- mysql/mysql server · mysql/community server · mysql/mysql enterprise server
- Source
- cve@mitre.org
References
- http://bugs.mysql.com/32111
- http://dev.mysql.com/doc/refman/4.1/en/news-4-1-24.html
- http://dev.mysql.com/doc/refman/5.0/en/releasenotes-cs-5-0-51.html
- http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-52.html
- http://forums.mysql.com/read.php?3%2C186931%2C186931
- http://lists.apple.com/archives/security-announce/2008/Oct/msg00001.html
- http://lists.mysql.com/announce/495Exploit, Vendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00003.html
- http://secunia.com/advisories/27981Vendor Advisory
- http://secunia.com/advisories/28025Vendor Advisory
- http://secunia.com/advisories/28040Vendor Advisory
- http://secunia.com/advisories/28063Vendor Advisory
- http://secunia.com/advisories/28099Vendor Advisory
- http://secunia.com/advisories/28108Vendor Advisory
- http://secunia.com/advisories/28128Vendor Advisory
- http://secunia.com/advisories/28343Vendor Advisory
- http://secunia.com/advisories/28559Vendor Advisory
- http://secunia.com/advisories/28838Vendor Advisory
- http://secunia.com/advisories/29706Vendor Advisory
- http://secunia.com/advisories/32222Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200804-04.xml
- http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.428959
- http://support.apple.com/kb/HT3216
- http://www.debian.org/security/2008/dsa-1451
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:243
- http://www.redhat.com/support/errata/RHSA-2007-1155.htmlVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2007-1157.htmlVendor Advisory
- http://www.securityfocus.com/archive/1/486477/100/0/threaded
- http://www.securityfocus.com/bid/26765
- http://www.securityfocus.com/bid/31681Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.