TROYANOSYVIRUS
Voltar para CVEs

CVE-2015-8949

N/A

Descricao

Use-after-free vulnerability in the my_login function in DBD::mysql before 4.033_01 allows attackers to have unspecified impact by leveraging a call to mysql_errno after a failure of my_login.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado8/19/2016
Ultima modificacao4/12/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

dbd-mysql_project:dbd-mysqldebian:debian_linux

Fraquezas (CWE)

CWE-416

Referencias

http://www.debian.org/security/2016/dsa-3635(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2016/07/25/13(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2016/07/27/1(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/92118(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/perl5-dbi/DBD-mysql/pull/45(af854a3a-2127-422b-91ae-364da2661108)
https://security.gentoo.org/glsa/201701-51(af854a3a-2127-422b-91ae-364da2661108)

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.