Oracle MySQL and MariaDB 5.5.x before 5.5.29, 5.3.x before 5.3.12, and 5.2.x before 5.2.14 does not modify the salt during multiple executions of the change_user command within the same connection which makes it easier for remote authenticated users to conduct brute force password guessing attacks.
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
Link | Tags |
---|---|
http://seclists.org/fulldisclosure/2012/Dec/58 | mailing list exploit third party advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=883719 | issue tracking third party advisory patch |
http://seclists.org/fulldisclosure/2012/Dec/83 | mailing list exploit third party advisory |
http://seclists.org/oss-sec/2012/q4/424 | third party advisory mailing list |
http://www.mandriva.com/security/advisories?name=MDVSA-2013:102 | vendor advisory broken link |
http://secunia.com/advisories/53372 | third party advisory not applicable |
http://security.gentoo.org/glsa/glsa-201308-06.xml | vdb entry third party advisory patch vendor advisory |
https://mariadb.atlassian.net/browse/MDEV-3915 | broken link vendor advisory |