Security Advisory

CVE-2008-3963

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-09-10 15:00:00
Last updated 2024-08-07 10:00:41
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

MySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not properly handle a b'' (b single-quote single-quote) token, aka an empty bit-string literal, which allows remote attackers to cause a denial of service (daemon crash) by using this token in a SQL statement.