← Back

CVE-2010-3682

nvd nist
Published: Jan 11, 2011Modified: Apr 29, 2026

JSON object

Loading...
4.0
Vector
AV:N/AC:L/Au:S/C:N/I:N/A:P
Exploitability: 8.0 / Impact: 2.9
Source: NVD

Description

Oracle MySQL 5.1 before 5.1.49 and 5.0 before 5.0.92 allows remote authenticated users to cause a denial of service (mysqld daemon crash) by using EXPLAIN with crafted "SELECT ... UNION ... ORDER BY (SELECT ... WHERE ...)" statements, which triggers a NULL pointer dereference in the Item_singlerow_subselect::store function.

Affected (116)

Products: Mysql: Mysql · Oracle: Mysql
1 product
Mysql
1 product
Mysql
Configuration A
50 vulnerable
Vulnerable SoftwareAffected Versions
Mysql
Up to 5.1.48
Version 5.1.23
Version 5.1.31
Version 5.1.32
Version 5.1.34
Version 5.1.37
Oracle
Version 5.1.10
Version 5.1.11
Version 5.1.12
Version 5.1.13
Version 5.1.14
Version 5.1.15
Version 5.1.16
Version 5.1.17
Version 5.1.18
Version 5.1.19
Version 5.1.1
Version 5.1.20
Version 5.1.21
Version 5.1.22
Version 5.1.23 a
Version 5.1.24
Version 5.1.25
Version 5.1.26
Version 5.1.27
Version 5.1.28
Version 5.1.29
Version 5.1.2
Version 5.1.30
Version 5.1.31 sp1
Version 5.1.33
Version 5.1.34 sp1
Version 5.1.35
Version 5.1.36
Version 5.1.37 sp1
Version 5.1.38
Version 5.1.39
Version 5.1.3
Version 5.1.40
Version 5.1.40 sp1
Version 5.1.41
Version 5.1.42
Version 5.1.43
Version 5.1.43 sp1
Version 5.1.44
Version 5.1.45
Version 5.1.46
Version 5.1.46 sp1
Version 5.1.47
Version 5.1.4
Configuration B
66 vulnerable
Vulnerable SoftwareAffected Versions
Mysql
Up to 5.0.91
Version 5.0.0
Version 5.0.10
Version 5.0.15
Version 5.0.16
Version 5.0.17
Version 5.0.1
Version 5.0.20
Version 5.0.24
Version 5.0.2
Version 5.0.30
Version 5.0.36
Version 5.0.44
Version 5.0.54
Version 5.0.56
Version 5.0.60
Version 5.0.66
Version 5.0.72
Version 5.0.74
Version 5.0.82
Version 5.0.84
Version 5.0.87
Oracle
Version 5.0.28
Version 5.0.30 sp1
Version 5.0.32
Version 5.0.34
Version 5.0.36 sp1
Version 5.0.38
Version 5.0.40
Version 5.0.41
Version 5.0.42
Version 5.0.44 sp1
Version 5.0.45
Version 5.0.46
Version 5.0.48
Version 5.0.50
Version 5.0.51 a
Version 5.0.51 b
Version 5.0.52
Version 5.0.56 sp1
Version 5.0.58
Version 5.0.62
Version 5.0.64
Version 5.0.66 a
Version 5.0.66 sp1
Version 5.0.67
Version 5.0.68
Version 5.0.70
Version 5.0.72 sp1
Version 5.0.74 sp1
Version 5.0.75
Version 5.0.76
Version 5.0.77
Version 5.0.78
Version 5.0.79
Version 5.0.80
Version 5.0.81
Version 5.0.82 sp1
Version 5.0.83
Version 5.0.84 sp1
Version 5.0.85
Version 5.0.86
Version 5.0.87 sp1
Version 5.0.88
Version 5.0.89
Version 5.0.90

References (50)

Source: cve@mitre.org
ExploitPatch
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatch
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatch
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.