CyberSec.Space Logo
CVEブラウザに戻る

CVE-2004-0836

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0010%
EPSS Percentile25.91th
Published2004年11月3日
Last Modified2026年4月16日

Vulnerability Description

Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service and possibly execute arbitrary code via a DNS response with a large address length (h_length).

Affected Platforms (CPE)

📦
Oracle

Mysql

>= 3.20 and < 3.23.49
📦
Oracle

Mysql

>= 4.0.0 and < 4.0.21
💻
Debian

Debian Linux

= 3.0

References & Advisories

関連する脆弱性情報