← Back

CVE-2010-3835

nvd nist
Published: Jan 14, 2011Modified: Apr 29, 2026

JSON object

Loading...
4.0
Vector
AV:N/AC:L/Au:S/C:N/I:N/A:P
Exploitability: 8.0 / Impact: 2.9
Source: NVD

Description

MySQL 5.1 before 5.1.51 and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (mysqld server crash) by performing a user-variable assignment in a logical expression that is calculated and stored in a temporary table for GROUP BY, then causing the expression value to be used after the table is created, which causes the expression to be re-evaluated instead of accessing its value from the table.

Affected (65)

Products: Mysql: Mysql · Oracle: Mysql
1 product
Mysql
1 product
Mysql
Configuration A
59 vulnerable
Vulnerable SoftwareAffected Versions
Mysql
Version 5.1.23
Version 5.1.31
Version 5.1.32
Version 5.1.34
Version 5.1.37
Version 5.1.5
Oracle
Version 5.1.10
Version 5.1.11
Version 5.1.12
Version 5.1.13
Version 5.1.14
Version 5.1.15
Version 5.1.16
Version 5.1.17
Version 5.1.18
Version 5.1.19
Version 5.1.1
Version 5.1.20
Version 5.1.21
Version 5.1.22
Version 5.1.23 a
Version 5.1.24
Version 5.1.25
Version 5.1.26
Version 5.1.27
Version 5.1.28
Version 5.1.29
Version 5.1.2
Version 5.1.30
Version 5.1.31 sp1
Version 5.1.33
Version 5.1.34 sp1
Version 5.1.35
Version 5.1.36
Version 5.1.37 sp1
Version 5.1.38
Version 5.1.39
Version 5.1.3
Version 5.1.40
Version 5.1.40 sp1
Version 5.1.41
Version 5.1.42
Version 5.1.43
Version 5.1.43 sp1
Version 5.1.44
Version 5.1.45
Version 5.1.46
Version 5.1.46 sp1
Version 5.1.47
Version 5.1.48
Version 5.1.49
Version 5.1.49 sp1
Version 5.1.4
Version 5.1.50
Version 5.1.6
Version 5.1.7
Version 5.1.8
Version 5.1.9
Version 5.1
Configuration B
6 vulnerable
Vulnerable SoftwareAffected Versions
Oracle
Version 5.5.0
Version 5.5.1
Version 5.5.2
Version 5.5.3
Version 5.5.4
Version 5.5.5

Related CWEs

References (42)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.