Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Pre-auth buffer-overflow in mySQL through yaSSL Jan 04 2008 05:54PM
Luigi Auriemma (aluigi autistici org)

The following is a proof-of-concept for testing the buffer-overflow
which affects yaSSL <= 1.7.5 on mySQL servers, any version, included the
latest 6.0.3:

http://aluigi.org/poc/mysqlo.zip

The vulnerability is exploitable before authentication so the only
requirements for testing it are the usag...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus