MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, uses predictable file names when creating temporary tables, which allows local users with CREATE TEMPORARY TABLE privileges to overwrite arbitrary files via a symlink attack.
2005-05-02T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 2.1 (LOW)
AV:L/AC:L/Au:N/C:N/I:P/A:N
3.9
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | mysql | mysql | 4.1.0 | Yes |
| Application | mysql | mysql | 4.1.3 | Yes |
| Application | mysql | mysql | 4.1.10 | Yes |
| Application | oracle | mysql | 3.23.49 | Yes |
| Application | oracle | mysql | 4.0.0 | Yes |
| Application | oracle | mysql | 4.0.1 | Yes |
| Application | oracle | mysql | 4.0.2 | Yes |
| Application | oracle | mysql | 4.0.3 | Yes |
| Application | oracle | mysql | 4.0.4 | Yes |
| Application | oracle | mysql | 4.0.5 | Yes |
| Application | oracle | mysql | 4.0.5a | Yes |
| Application | oracle | mysql | 4.0.6 | Yes |
| Application | oracle | mysql | 4.0.7 | Yes |
| Application | oracle | mysql | 4.0.7 | Yes |
| Application | oracle | mysql | 4.0.8 | Yes |
| Application | oracle | mysql | 4.0.8 | Yes |
| Application | oracle | mysql | 4.0.9 | Yes |
| Application | oracle | mysql | 4.0.9 | Yes |
| Application | oracle | mysql | 4.0.10 | Yes |
| Application | oracle | mysql | 4.0.11 | Yes |
| Application | oracle | mysql | 4.0.11 | Yes |
| Application | oracle | mysql | 4.0.12 | Yes |
| Application | oracle | mysql | 4.0.13 | Yes |
| Application | oracle | mysql | 4.0.14 | Yes |
| Application | oracle | mysql | 4.0.15 | Yes |
| Application | oracle | mysql | 4.0.18 | Yes |
| Application | oracle | mysql | 4.0.20 | Yes |
| Application | oracle | mysql | 4.0.21 | Yes |
| Application | oracle | mysql | 4.0.23 | Yes |
| Application | oracle | mysql | 4.1.0 | Yes |
| Application | oracle | mysql | 4.1.2 | Yes |
| Application | oracle | mysql | 4.1.3 | Yes |
| Application | oracle | mysql | 4.1.4 | Yes |
| Application | oracle | mysql | 4.1.5 | Yes |