|
1 | 1 | {
|
| 2 | + "data_version": "4.0", |
| 3 | + "data_type": "CVE", |
| 4 | + "data_format": "MITRE", |
2 | 5 | "CVE_data_meta": {
|
3 |
| - |
4 | 6 | "ID": "CVE-2005-0709",
|
| 7 | + |
5 | 8 | "STATE": "PUBLIC"
|
6 | 9 | },
|
| 10 | + "description": { |
| 11 | + "description_data": [ |
| 12 | + { |
| 13 | + "lang": "eng", |
| 14 | + "value": "MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to execute arbitrary code by using CREATE FUNCTION to access libc calls, as demonstrated by using strcat, on_exit, and exit." |
| 15 | + } |
| 16 | + ] |
| 17 | + }, |
| 18 | + "problemtype": { |
| 19 | + "problemtype_data": [ |
| 20 | + { |
| 21 | + "description": [ |
| 22 | + { |
| 23 | + "lang": "eng", |
| 24 | + "value": "n/a" |
| 25 | + } |
| 26 | + ] |
| 27 | + } |
| 28 | + ] |
| 29 | + }, |
7 | 30 | "affects": {
|
8 | 31 | "vendor": {
|
9 | 32 | "vendor_data": [
|
10 | 33 | {
|
| 34 | + "vendor_name": "n/a", |
11 | 35 | "product": {
|
12 | 36 | "product_data": [
|
13 | 37 | {
|
14 | 38 | "product_name": "n/a",
|
15 | 39 | "version": {
|
16 | 40 | "version_data": [
|
17 | 41 | {
|
| 42 | + "version_affected": "=", |
18 | 43 | "version_value": "n/a"
|
19 | 44 | }
|
20 | 45 | ]
|
21 | 46 | }
|
22 | 47 | }
|
23 | 48 | ]
|
24 |
| - }, |
25 |
| - "vendor_name": "n/a" |
| 49 | + } |
26 | 50 | }
|
27 | 51 | ]
|
28 | 52 | }
|
29 | 53 | },
|
30 |
| - "data_format": "MITRE", |
31 |
| - "data_type": "CVE", |
32 |
| - "data_version": "4.0", |
33 |
| - "description": { |
34 |
| - "description_data": [ |
35 |
| - { |
36 |
| - "lang": "eng", |
37 |
| - "value": "MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows remote authenticated users with INSERT and DELETE privileges to execute arbitrary code by using CREATE FUNCTION to access libc calls, as demonstrated by using strcat, on_exit, and exit." |
38 |
| - } |
39 |
| - ] |
40 |
| - }, |
41 |
| - "problemtype": { |
42 |
| - "problemtype_data": [ |
43 |
| - { |
44 |
| - "description": [ |
45 |
| - { |
46 |
| - "lang": "eng", |
47 |
| - "value": "n/a" |
48 |
| - } |
49 |
| - ] |
50 |
| - } |
51 |
| - ] |
52 |
| - }, |
53 | 54 | "references": {
|
54 | 55 | "reference_data": [
|
55 | 56 | {
|
56 |
| - "name": "2005-0009", |
57 |
| - "refsource": "TRUSTIX", |
58 |
| - "url": "http://www.trustix.org/errata/2005/0009/" |
| 57 | + "url": "http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html", |
| 58 | + "refsource": "MISC", |
| 59 | + "name": "http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html" |
59 | 60 | },
|
60 | 61 | {
|
61 |
| - "name": "DSA-707", |
62 |
| - "refsource": "DEBIAN", |
63 |
| - "url": "http://www.debian.org/security/2005/dsa-707" |
| 62 | + "url": "http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html", |
| 63 | + "refsource": "MISC", |
| 64 | + "name": "http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html" |
64 | 65 | },
|
65 | 66 | {
|
66 |
| - "name": "20050310 Mysql CREATE FUNCTION libc arbitrary code execution.", |
67 |
| - "refsource": "BUGTRAQ", |
68 |
| - "url": "http://marc.info/?l=bugtraq&m=111066115808506&w=2" |
| 67 | + "url": "http://sunsolve.sun.com/search/document.do?assetkey=1-26-101864-1", |
| 68 | + "refsource": "MISC", |
| 69 | + "name": "http://sunsolve.sun.com/search/document.do?assetkey=1-26-101864-1" |
69 | 70 | },
|
70 | 71 | {
|
71 |
| - "name": "20050310 Mysql CREATE FUNCTION libc arbitrary code execution.", |
72 |
| - "refsource": "VULNWATCH", |
73 |
| - "url": "http://archives.neohapsis.com/archives/vulnwatch/2005-q1/0084.html" |
| 72 | + "url": "http://www.debian.org/security/2005/dsa-707", |
| 73 | + "refsource": "MISC", |
| 74 | + "name": "http://www.debian.org/security/2005/dsa-707" |
74 | 75 | },
|
75 | 76 | {
|
76 |
| - "name": "RHSA-2005:334", |
77 |
| - "refsource": "REDHAT", |
78 |
| - "url": "http://www.redhat.com/support/errata/RHSA-2005-334.html" |
| 77 | + "url": "http://www.gentoo.org/security/en/glsa/glsa-200503-19.xml", |
| 78 | + "refsource": "MISC", |
| 79 | + "name": "http://www.gentoo.org/security/en/glsa/glsa-200503-19.xml" |
79 | 80 | },
|
80 | 81 | {
|
81 |
| - "name": "101864", |
82 |
| - "refsource": "SUNALERT", |
83 |
| - "url": "http://sunsolve.sun.com/search/document.do?assetkey=1-26-101864-1" |
| 82 | + "url": "http://www.mandriva.com/security/advisories?name=MDKSA-2005:060", |
| 83 | + "refsource": "MISC", |
| 84 | + "name": "http://www.mandriva.com/security/advisories?name=MDKSA-2005:060" |
84 | 85 | },
|
85 | 86 | {
|
86 |
| - "name": "SUSE-SA:2005:019", |
87 |
| - "refsource": "SUSE", |
88 |
| - "url": "http://www.novell.com/linux/security/advisories/2005_19_mysql.html" |
| 87 | + "url": "http://www.novell.com/linux/security/advisories/2005_19_mysql.html", |
| 88 | + "refsource": "MISC", |
| 89 | + "name": "http://www.novell.com/linux/security/advisories/2005_19_mysql.html" |
89 | 90 | },
|
90 | 91 | {
|
91 |
| - "name": "USN-96-1", |
92 |
| - "refsource": "UBUNTU", |
93 |
| - "url": "https://usn.ubuntu.com/96-1/" |
| 92 | + "url": "http://www.redhat.com/support/errata/RHSA-2005-334.html", |
| 93 | + "refsource": "MISC", |
| 94 | + "name": "http://www.redhat.com/support/errata/RHSA-2005-334.html" |
94 | 95 | },
|
95 | 96 | {
|
96 |
| - "name": "RHSA-2005:348", |
97 |
| - "refsource": "REDHAT", |
98 |
| - "url": "http://www.redhat.com/support/errata/RHSA-2005-348.html" |
| 97 | + "url": "http://www.redhat.com/support/errata/RHSA-2005-348.html", |
| 98 | + "refsource": "MISC", |
| 99 | + "name": "http://www.redhat.com/support/errata/RHSA-2005-348.html" |
99 | 100 | },
|
100 | 101 | {
|
101 |
| - "name": "APPLE-SA-2005-08-15", |
102 |
| - "refsource": "APPLE", |
103 |
| - "url": "http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html" |
| 102 | + "url": "http://www.securityfocus.com/bid/12781", |
| 103 | + "refsource": "MISC", |
| 104 | + "name": "http://www.securityfocus.com/bid/12781" |
104 | 105 | },
|
105 | 106 | {
|
106 |
| - "name": "MDKSA-2005:060", |
107 |
| - "refsource": "MANDRAKE", |
108 |
| - "url": "http://www.mandriva.com/security/advisories?name=MDKSA-2005:060" |
| 107 | + "url": "http://www.trustix.org/errata/2005/0009/", |
| 108 | + "refsource": "MISC", |
| 109 | + "name": "http://www.trustix.org/errata/2005/0009/" |
109 | 110 | },
|
110 | 111 | {
|
111 |
| - "name": "GLSA-200503-19", |
112 |
| - "refsource": "GENTOO", |
113 |
| - "url": "http://www.gentoo.org/security/en/glsa/glsa-200503-19.xml" |
| 112 | + "url": "https://usn.ubuntu.com/96-1/", |
| 113 | + "refsource": "MISC", |
| 114 | + "name": "https://usn.ubuntu.com/96-1/" |
114 | 115 | },
|
115 | 116 | {
|
116 |
| - "name": "oval:org.mitre.oval:def:10479", |
117 |
| - "refsource": "OVAL", |
118 |
| - "url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10479" |
| 117 | + "url": "http://archives.neohapsis.com/archives/vulnwatch/2005-q1/0084.html", |
| 118 | + "refsource": "MISC", |
| 119 | + "name": "http://archives.neohapsis.com/archives/vulnwatch/2005-q1/0084.html" |
119 | 120 | },
|
120 | 121 | {
|
121 |
| - "name": "APPLE-SA-2005-08-17", |
122 |
| - "refsource": "APPLE", |
123 |
| - "url": "http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html" |
| 122 | + "url": "http://marc.info/?l=bugtraq&m=111066115808506&w=2", |
| 123 | + "refsource": "MISC", |
| 124 | + "name": "http://marc.info/?l=bugtraq&m=111066115808506&w=2" |
124 | 125 | },
|
125 | 126 | {
|
126 |
| - "name": "12781", |
127 |
| - "refsource": "BID", |
128 |
| - "url": "http://www.securityfocus.com/bid/12781" |
| 127 | + "url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10479", |
| 128 | + "refsource": "MISC", |
| 129 | + "name": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10479" |
129 | 130 | }
|
130 | 131 | ]
|
131 | 132 | }
|
|
0 commit comments