Format string vulnerability in time.cc in MySQL Server 4.1 before 4.1.21 and 5.0 before 1 April 2006 allows remote authenticated users to cause a denial of service (crash) via a format string instead of a date as the first parameter to the date_format function, which is later used in a formatted print call to display the error message.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DSA-1112-1 | New mysql-dfsg-4.1 packages fix denial of service |
![]() |
USN-321-1 | mysql-dfsg-4.1 vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T18:30:34.063Z
Reserved: 2006-07-10T00:00:00
Link: CVE-2006-3469

No data.

Status : Deferred
Published: 2006-07-21T14:03:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2006-3469


No data.