Exploit MySQL 6.0.4 - Empty Binary String Literal Remote Denial of Service

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
32348
Проверка EDB
  1. Пройдено
Автор
KAY ROEPKE
Тип уязвимости
DOS
Платформа
LINUX
CVE
cve-2008-3963
Дата публикации
2008-03-28
Код:
source: https://www.securityfocus.com/bid/31081/info

MySQL is prone to a remote denial-of-service vulnerability because it fails to handle empty binary string literals.

An attacker can exploit this issue to crash the application, denying access to legitimate users.

This issue affects versions prior to MySQL 5.0.66, 5.1.26, and 6.0.6. 

The following proof-of-concept query is available:

select b'';
 
Источник
www.exploit-db.com

Похожие темы