DescriptionMySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not properly handle a b'' (b single-quote single-quote) token, aka an empty bit-string literal, which allows remote attackers to cause a denial of service (daemon crash) by using this token in a SQL statement.
Overall state of this security issue: Resolved
This issue is currently rated as having moderate severity.
|National Vulnerability Database|
SUSE Security Advisories:
- SUSE-SR:2008:025, published Fri, 14 Nov 2008 15:00:00 +0000
- SUSE-SR:2009:001, published Mon, 12 Jan 2009 13:00:00 +0000
SUSE Timeline for this CVECVE page created: Tue Jul 9 16:31:16 2013
CVE page last modified: Fri Oct 7 12:45:42 2022