Security Advisory

CVE-2002-0969

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2004-09-01 04:00:00
Last updated 2024-08-08 03:12:16
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Buffer overflow in MySQL daemon (mysqld) before 3.23.50, and 4.0 beta before 4.02, on the Win32 platform, allows local users to execute arbitrary code via a long "datadir" parameter in the my.ini initialization file, whose permissions on Windows allow Full Control to the Everyone group.