← Back

CVE-2010-3837

nvd nist
Published: Jan 14, 2011Modified: Apr 29, 2026

JSON object

Loading...
4.0
Vector
AV:N/AC:L/Au:S/C:N/I:N/A:P
Exploitability: 8.0 / Impact: 2.9
Source: NVD

Description

MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (server crash) via a prepared statement that uses GROUP_CONCAT with the WITH ROLLUP modifier, probably triggering a use-after-free error when a copied object is modified in a way that also affects the original object.

Affected (130)

Products: Mysql: Mysql · Oracle: Mysql
1 product
Mysql
1 product
Mysql
Configuration A
59 vulnerable
Vulnerable SoftwareAffected Versions
Mysql
Version 5.1.23
Version 5.1.31
Version 5.1.32
Version 5.1.34
Version 5.1.37
Version 5.1.5
Oracle
Version 5.1.10
Version 5.1.11
Version 5.1.12
Version 5.1.13
Version 5.1.14
Version 5.1.15
Version 5.1.16
Version 5.1.17
Version 5.1.18
Version 5.1.19
Version 5.1.1
Version 5.1.20
Version 5.1.21
Version 5.1.22
Version 5.1.23 a
Version 5.1.24
Version 5.1.25
Version 5.1.26
Version 5.1.27
Version 5.1.28
Version 5.1.29
Version 5.1.2
Version 5.1.30
Version 5.1.31 sp1
Version 5.1.33
Version 5.1.34 sp1
Version 5.1.35
Version 5.1.36
Version 5.1.37 sp1
Version 5.1.38
Version 5.1.39
Version 5.1.3
Version 5.1.40
Version 5.1.40 sp1
Version 5.1.41
Version 5.1.42
Version 5.1.43
Version 5.1.43 sp1
Version 5.1.44
Version 5.1.45
Version 5.1.46
Version 5.1.46 sp1
Version 5.1.47
Version 5.1.48
Version 5.1.49
Version 5.1.49 sp1
Version 5.1.4
Version 5.1.50
Version 5.1.6
Version 5.1.7
Version 5.1.8
Version 5.1.9
Version 5.1
Configuration B
6 vulnerable
Vulnerable SoftwareAffected Versions
Oracle
Version 5.5.0
Version 5.5.1
Version 5.5.2
Version 5.5.3
Version 5.5.4
Version 5.5.5
Configuration C
65 vulnerable
Vulnerable SoftwareAffected Versions
Mysql
Version 5.0.0
Version 5.0.10
Version 5.0.15
Version 5.0.16
Version 5.0.17
Version 5.0.1
Version 5.0.20
Version 5.0.22.1.0.1
Version 5.0.24
Version 5.0.2
Version 5.0.30
Version 5.0.36
Version 5.0.3
Version 5.0.44
Version 5.0.45b
Version 5.0.4
Version 5.0.5.0.21
Version 5.0.54
Version 5.0.56
Version 5.0.5
Version 5.0.60
Version 5.0.66
Version 5.0.82
Version 5.0.84
Version 5.0.87
Oracle
Version 5.0.0 alpha
Version 5.0.11
Version 5.0.12
Version 5.0.13
Version 5.0.14
Version 5.0.18
Version 5.0.19
Version 5.0.21
Version 5.0.22
Version 5.0.23
Version 5.0.25
Version 5.0.26
Version 5.0.27
Version 5.0.30 sp1
Version 5.0.32
Version 5.0.33
Version 5.0.37
Version 5.0.38
Version 5.0.3 beta
Version 5.0.41
Version 5.0.42
Version 5.0.45
Version 5.0.50
Version 5.0.51
Version 5.0.52
Version 5.0.67
Version 5.0.6
Version 5.0.75
Version 5.0.77
Version 5.0.7
Version 5.0.81
Version 5.0.83
Version 5.0.85
Version 5.0.86
Version 5.0.88
Version 5.0.89
Version 5.0.8
Version 5.0.90
Version 5.0.91
Version 5.0.9

Related CWEs

References (44)

Source: cve@mitre.org
Patch
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.