oss-sec mailing list archives

Re: CVE Request: MySQL: MyISAM temporary file issue


From: Sven Kieske <s.kieske () mittwald de>
Date: Thu, 11 Sep 2014 10:28:21 +0200



On 10/09/14 18:00, Salvatore Bonaccorso wrote:
Hi

The changes for MySQL 5.5.39[1] and 5.6.20[2] contain a reference to
the following issue, which could be exploited by a local user to run
arbitrary code in context of the mysqld server.

While I'm investigating this:
Does someone happen to know in which version this vuln got introduced?

Thanks!

-- 
Mit freundlichen Grüßen / Regards

Sven Kieske

Systemadministrator
Mittwald CM Service GmbH & Co. KG
Königsberger Straße 6
32339 Espelkamp
T: +49-5772-293-100
F: +49-5772-293-333
https://www.mittwald.de
Geschäftsführer: Robert Meyer
St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen
Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen


Current thread: