Novell Home

CVE-2007-6303

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2007-6303 at MITRE

Description

MySQL 5.0.x before 5.0.51a, 5.1.x before 5.1.23, and 6.0.x before 6.0.4 does not update the DEFINER value of a view when the view is altered, which allows remote authenticated users to gain privileges via a sequence of statements including a CREATE SQL SECURITY DEFINER VIEW statement and an ALTER VIEW statement.

NVD CVSS v2 Base Score: 3.5 (AV:N/AC:M/Au:S/C:N/I:P/A:N)

Novell/SUSE information

Novell Bugzilla entry: 348003

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
Novell Linux Desktop 9 for x86
Novell Linux POS 9
Open Enterprise Server
SUSE CORE 9 for AMD64 and Intel EM64T
SUSE CORE 9 for IBM POWER
SUSE CORE 9 for IBM S/390 31bit
SUSE CORE 9 for IBM zSeries 64bit
SUSE CORE 9 for Itanium Processor Family
SUSE CORE 9 for x86
  • mysql >= 4.0.18-32.32
  • mysql-Max >= 4.0.18-32.32
  • mysql-client >= 4.0.18-32.32
  • mysql-devel >= 4.0.18-32.32
  • mysql-shared >= 4.0.18-32.32
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SUSE Linux Enterprise Desktop 10 SP1 for x86
  • mysql >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SUSE Linux Enterprise Desktop 10 SP1 for AMD64 and Intel EM64T
  • mysql >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
  • mysql-shared-32bit >= 5.0.26-12.16
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SLE SDK 10 SP1 for x86
  • mysql >= 5.0.26-12.16
  • mysql-Max >= 5.0.26-12.16
  • mysql-bench >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SLE SDK 10 SP1 for IPF
  • mysql >= 5.0.26-12.16
  • mysql-Max >= 5.0.26-12.16
  • mysql-bench >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
  • mysql-shared-x86 >= 5.0.26-12.16
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SLE SDK 10 SP1 for IBM iSeries and IBM pSeries
  • mysql >= 5.0.26-12.16
  • mysql-Max >= 5.0.26-12.16
  • mysql-bench >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
  • mysql-shared-64bit >= 5.0.26-12.16
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SLE SDK 10 SP1 for IBM zSeries
SLE SDK 10 SP1 for X86-64
  • mysql >= 5.0.26-12.16
  • mysql-Max >= 5.0.26-12.16
  • mysql-bench >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
  • mysql-shared-32bit >= 5.0.26-12.16
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SUSE Linux Enterprise Server 10 SP1 for x86
  • mysql >= 5.0.26-12.16
  • mysql-Max >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SUSE Linux Enterprise Server 10 SP1 for IPF
  • mysql >= 5.0.26-12.16
  • mysql-Max >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
  • mysql-shared-x86 >= 5.0.26-12.16
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SUSE Linux Enterprise Server 10 SP1 for IBM POWER
  • mysql >= 5.0.26-12.16
  • mysql-Max >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
  • mysql-shared-64bit >= 5.0.26-12.16
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SUSE Linux Enterprise Server 10 SP1 for AMD64 and Intel EM64T
SUSE Linux Enterprise Server 10 SP1 for IBM zSeries 64bit
  • mysql >= 5.0.26-12.16
  • mysql-Max >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
  • mysql-shared-32bit >= 5.0.26-12.16
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
Novell Linux Desktop 9 for x86_64
  • mysql >= 4.0.18-32.32
  • mysql-Max >= 4.0.18-32.32
  • mysql-bench >= 4.0.18-32.32
  • mysql-client >= 4.0.18-32.32
  • mysql-devel >= 4.0.18-32.32
  • mysql-shared >= 4.0.18-32.32
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SLES SDK 9 for IBM S/390 and IBM zSeries
SLES SDK 9 for IBM iSeries and IBM pSeries
SLES SDK 9 for IBM zSeries
SLES SDK 9 for IPF
SLES SDK 9 for X86-64
SLES SDK 9 for x86
  • mysql-bench >= 4.0.18-32.32
core9.s390
sles10.s390x
core9.x86
core9.s390
core9.x86
YOU Patch Nr: 12044
ZYPP Patch Nr: 4879
SUSE LINUX 10.1
  • mysql >= 5.0.26-12.16
  • mysql-Max >= 5.0.26-12.16
  • mysql-bench >= 5.0.26-12.16
  • mysql-client >= 5.0.26-12.16
  • mysql-devel >= 5.0.26-12.16
  • mysql-shared >= 5.0.26-12.16
  • mysql-shared-32bit >= 5.0.26-12.16
  • mysql-shared-64bit >= 5.0.26-12.16
openSUSE 10.2
  • mysql >= 5.0.26-16
  • mysql-Max >= 5.0.26-16
  • mysql-bench >= 5.0.26-16
  • mysql-client >= 5.0.26-16
  • mysql-debug >= 5.0.26-16
  • mysql-devel >= 5.0.26-16
  • mysql-shared >= 5.0.26-16
  • mysql-shared-32bit >= 5.0.26-16
  • mysql-shared-64bit >= 5.0.26-16
openSUSE 10.3
  • libmysqlclient-devel >= 5.0.45-22.2
  • libmysqlclient15 >= 5.0.45-22.2
  • libmysqlclient15-32bit >= 5.0.45-22.2
  • libmysqlclient15-64bit >= 5.0.45-22.2
  • libmysqlclient_r15 >= 5.0.45-22.2
  • libmysqlclient_r15-32bit >= 5.0.45-22.2
  • libmysqlclient_r15-64bit >= 5.0.45-22.2
  • mysql >= 5.0.45-22.2
  • mysql-Max >= 5.0.45-22.2
  • mysql-bench >= 5.0.45-22.2
  • mysql-client >= 5.0.45-22.2
  • mysql-debug >= 5.0.45-22.2
  • mysql-tools >= 5.0.45-22.2

© 2012 Novell