MySQL SHOW GRANTS Pasword Hash Disclosure Vulnerability

Bugtraq ID: 2380
Class: Access Validation Error
CVE:
Remote: No
Local: Yes
Published: Jan 26 2001 12:00AM
Updated: Jan 26 2001 12:00AM
Credit: Reported to bugtraq by Linux-Mandrake in an advisory dated January 26, 2001.
Vulnerable: MySQL AB MySQL 3.23.30
MySQL AB MySQL 3.23.29
MySQL AB MySQL 3.23.28 gamma
MySQL AB MySQL 3.23.28
MySQL AB MySQL 3.23.27
MySQL AB MySQL 3.23.26
+ Redhat Linux 7.1 ia64
+ Redhat Linux 7.1 alpha
+ Redhat Linux 7.1
MySQL AB MySQL 3.23.25
MySQL AB MySQL 3.23.24
MySQL AB MySQL 3.23.23
MySQL AB MySQL 3.23.10
MySQL AB MySQL 3.23.9
MySQL AB MySQL 3.23.8
MySQL AB MySQL 3.23.5
+ MandrakeSoft Corporate Server 2.1 x86_64
+ MandrakeSoft Corporate Server 2.1
+ Trustix Secure Linux 1.5
MySQL AB MySQL 3.23.4
MySQL AB MySQL 3.23.3
- FreeBSD FreeBSD 5.0
- FreeBSD FreeBSD 4.0
Not Vulnerable: MySQL AB MySQL 3.23.31
+ MandrakeSoft Single Network Firewall 7.2
+ Mandriva Linux Mandrake 7.2
MySQL AB MySQL 3.23.2


 

Privacy Statement
Copyright 2010, SecurityFocus