Format string vulnerability in time.cc in MySQL Server 4.1 before 4.1.21 and 5.0 before 1 April 2006 allows remote authenticated users to cause a denial of service (crash) via a format string instead of a date as the first parameter to the date_format function, which is later used in a formatted print call to display the error message.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1112-1 | New mysql-dfsg-4.1 packages fix denial of service |
Ubuntu USN |
USN-321-1 | mysql-dfsg-4.1 vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T18:30:34.063Z
Reserved: 2006-07-10T00:00:00
Link: CVE-2006-3469
No data.
Status : Deferred
Published: 2006-07-21T14:03:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2006-3469
OpenCVE Enrichment
No data.
Debian DSA
Ubuntu USN