
CVE-2012-2102 – mysql: Server crash on HANDLER READ NEXT after DELETE
https://notcve.org/view.php?id=CVE-2012-2102
20 Jun 2012 — MySQL 5.1.x before 5.1.62 and 5.5.x before 5.5.22 allows remote authenticated users to cause a denial of service (assertion failure and mysqld abort) by deleting a record and using HANDLER READ NEXT. MySQL v5.1.x antes de v5.1.62 y v5.5.x antes de v5.5.22 permite a usuarios remotos autenticados provocar una denegación de servicio (error de aserción y parada no ordenada de mysqld) mediante la supresión de un registro y usando 'HANDLER READ NEXT'. MySQL is a multi-user, multi-threaded SQL database server. It ... • http://bazaar.launchpad.net/~mysql/mysql-server/5.5/revision/3097.15.15 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2012-2122 – MySQL Authentication Bypass Password Dump
https://notcve.org/view.php?id=CVE-2012-2122
12 Jun 2012 — sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, when running in certain environments with certain implementations of the memcmp function, allows remote attackers to bypass authentication by repeatedly authenticating with the same incorrect password, which eventually causes a token comparison to succeed due to an improperly-checked return value. sql/password.c en... • https://packetstorm.news/files/id/181221 • CWE-287: Improper Authentication CWE-305: Authentication Bypass by Primary Weakness •

CVE-2012-0583 – mysql: unspecified DoS vulnerability in MyISAM (Oracle CPU April 2012)
https://notcve.org/view.php?id=CVE-2012-0583
03 May 2012 — Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.60 and earlier, and 5.5.19 and earlier, allows remote authenticated users to affect availability, related to MyISAM. Vulnerabilidad no especificada en el componente MySQL Server en Oracle MySQL v5.1.60 y anteriores, y v5.5.19 y anteriores, que permite a usuarios remotos autenticados afectar la disponibilidad, relacionado con MyISAM. Several issues have been discovered in the MySQL database server. The vulnerabilities are addressed b... • http://secunia.com/advisories/48890 •

CVE-2012-1688 – mysql: unspecified DoS vulnerability related to DML (CPU Apr 2012)
https://notcve.org/view.php?id=CVE-2012-1688
03 May 2012 — Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability, related to Server DML. Vulnerabilidad no especificada en el componente MySQL Server en Oracle MySQL v5.1.61 y anteriores, y v5.5.21 y anteriores, que permite a usuarios remotos autenticados afectar la disponibilidad, relacionado con Server DML. Several issues have been discovered in the MySQL database server. The vulnerabilities are add... • http://rhn.redhat.com/errata/RHSA-2012-1462.html •

CVE-2012-1690 – mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Apr 2012)
https://notcve.org/view.php?id=CVE-2012-1690
03 May 2012 — Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1703. Vulnerabilidad no especificada en el componente MySQL Server en Oracle MySQL 5.1.61 y versiones anteriores y 5.5.21 y versiones anteriores, permite a usuarios remotos autenticados afectar la disponibilidad a través de vectores desconocidos rela... • http://rhn.redhat.com/errata/RHSA-2012-1462.html •

CVE-2012-1696 – Gentoo Linux Security Advisory 201308-06
https://notcve.org/view.php?id=CVE-2012-1696
03 May 2012 — Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.19 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer. Vulnerabilidad no especificada en el componente de servidor MySQL en Oracle MySQL v5.5.19 y anteriores permite a usuarios remotos autenticados afectar a la disponibilidad a través de vectores desconocidos relacionados con el Optimizador de servidor. Multiple vulnerabilities have been found in MySQL, allowing attac... • http://secunia.com/advisories/48890 •

CVE-2012-1703 – mysql: unspecified DoS vulnerability related to Server Optimizer (CPU Apr 2012)
https://notcve.org/view.php?id=CVE-2012-1703
03 May 2012 — Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1690. Vulnerabilidad no especificada en el componente MySQL Server en Oracle MySQL 5.1.61 y versiones anteriores y 5.5.21 y versiones anteriores, permite a usuarios remotos autenticados afectar la disponibilidad a través de vectores desconocidos rela... • http://rhn.redhat.com/errata/RHSA-2012-1462.html •

CVE-2011-2262 – mysql: Unspecified vulnerability allows remote attackers to affect availability
https://notcve.org/view.php?id=CVE-2011-2262
18 Jan 2012 — Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote attackers to affect availability via unknown vectors. Vulnerabilidad no especificada en el componente MySQL Server de Oracle MySQL v5.1.x y v5.5.x permite a atacantes remotos afectar a la disponibilidad de los datos a través de vectores desconocidos. Multiple security issues were discovered in MySQL and this update includes new upstream MySQL versions to fix these issues. MySQL has been updated to 5.1.61 in... • http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=659687 •

CVE-2012-0075 – mysql: Unspecified vulnerability allows remote authenticated users to affect integrity
https://notcve.org/view.php?id=CVE-2012-0075
18 Jan 2012 — Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x, 5.1.x, and 5.5.x allows remote authenticated users to affect integrity via unknown vectors. Vulnerabilidad no especificada en el componente MySQL Server de Oracle MySQL v5.0.x, v5.1.x y v5.5.x permite a usuarios remotos autenticados afectar a la integridad de los datos a través de vectores desconocidos. Multiple security issues were discovered in MySQL and this update includes new upstream MySQL versions to fix these issues. MySQ... • http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=659687 •

CVE-2012-0087 – mysql: Unspecified vulnerability allows remote authenticated users to affect availability
https://notcve.org/view.php?id=CVE-2012-0087
18 Jan 2012 — Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x and 5.1.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0101 and CVE-2012-0102. Vulnerabilidad no especificada en el componente MySQL Server de Oracle MySQL v5.0.x y v5.1.x permite a usuarios remotos autenticados afectar a la disponibilidad de los datos a través de vectores desconocidos. Se trata de una vulnerabilidad diferente a la de los CVEs: CVE-2012-0101 ... • http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=659687 •