ID:4441 - Exploit for Input validation error in mysql - CVE-2010-3676

 
Main Vulnerability Database Exploits ID:4441 - Exploit for Input validation error in mysql - CVE-2010-3676

ID:4441 - Exploit for Input validation error in mysql - CVE-2010-3676

Published: August 11, 2020


Vulnerability identifier: #VU45462
Vulnerability risk: Low
CVE-ID: CVE-2010-3676
CWE-ID: CWE-20
Exploitation vector: Remote access
Vulnerable software:
mysql

Link to public exploit:


Vulnerability description

The vulnerability allows a remote #AU# to perform service disruption.

storage/innobase/dict/dict0crea.c in mysqld in Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (assertion failure) by modifying the (1) innodb_file_format or (2) innodb_file_per_table configuration parameters for the InnoDB storage engine, then executing a DDL statement.


Remediation

Install update from vendor's website.