oss-sec mailing list archives

Re: Re: Use after free in libmysqlclient.so


From: Simon McVittie <smcv () debian org>
Date: Fri, 10 Feb 2017 16:20:58 +0000

On Fri, 10 Feb 2017 at 11:59:59 +0100, pali () cpan org wrote:
On Friday 27 January 2017 23:53:29 pali () cpan org wrote:
C client library for MySQL (libmysqlclient.so) has use-after-free
defect which can cause crash of applications using that MySQL
client.

Is this a security vulnerability, or just a bug?

How would an attacker cause this to happen in the application
that they wish to target?

    S


Current thread: