[nycphp-talk] php & mysql in SecurityFocus Newsletter #214

Analysis & Solutions danielc at
Wed Sep 17 23:20:55 EDT 2003

Hey Folks:

More excitement...

MySQL Password Handler Buffer Overflow Vulnerability

The issue presents itself, due to a lack of sufficient bounds checking
performed on MySQL user passwords that are stored in the 'Password' field
of the 'User' table in a MySQL database. It has been reported that MySQL
fails to properly perform bounds checking when processing passwords. A  
password greater that 16 characters may overrun the bounds of a reserved
buffer in memory and corrupt adjacent memory. The buffer overflow occurs
in an ACL_USER instance of acl_init(), and may ultimately result in the
corruption of a saved instruction pointer.

An attacker with global administrative privileges on an affected MySQL    
server may potentially exploit this condition to have arbitrary supplied
instructions executed in the context of the MySQL server.

This vulnerability has been reported to affect all versions of MySQL up to
and including 4.0.14 and 3.0.57.

Digital Scribe Error Function Cross-Site Scripting Vulnerabi...

PHPBB URL BBCode HTML Injection Vulnerability

Invision Power Board Index.php Showtopic Cross-Site Scriptin...

KokeshCMS Unauthorized Content Editing Vulnerability

b2evolution Multiple Cross-Site Scripting Vulnerabilities

b2evolution Multiple SQL Injection Vulnerabilities



     FREE scripts that make web and database programming easier
 T H E   A N A L Y S I S   A N D   S O L U T I O N S   C O M P A N Y
 4015 7th Ave #4AJ, Brooklyn NY    v: 718-854-0335   f: 718-854-0409

More information about the talk mailing list