Input validation error in MySQL Server - CVE-2012-1690
Published: May 4, 2012 / Updated: August 4, 2020
Vulnerability details
The vulnerability allows a remote #AU# to perform service disruption.
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1703.
Affected software
mysql (Alpine package)
How to mitigate CVE-2012-1690
mysql (Alpine package) - update to 5.1.63-r0
External References
- http://rhn.redhat.com/errata/RHSA-2012-1462.html
- http://secunia.com/advisories/48890
- http://secunia.com/advisories/49179
- http://secunia.com/advisories/51309
- http://secunia.com/advisories/53372
- http://security.gentoo.org/glsa/glsa-201308-06.xml
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html
- http://www.securityfocus.com/bid/53074
- http://www.securitytracker.com/id?1026934