Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2006-3469

Format string vulnerability in time.cc in MySQL Server 4.1 before 4.1.21 and 5.0 before 1 April 2006 allows remote authenticated users to cause a denial of service (crash) via a format string instead of a date as the first parameter to the date_format function, which is later used in a formatted print call to display the error message.

  • Published: Jul 21, 2006
  • Updated: Apr 13, 2023
  • CVE: CVE-2006-3469
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4
  • AV:N/AC:L/Au:S/C:N/I:N/A:P

CWEs:

Software From Fixed in
mysql / mysql 5.0.10 5.0.10.x
mysql / mysql 5.0.15 5.0.15.x
mysql / mysql 5.0.17 5.0.17.x
mysql / mysql 4.1.13 4.1.13.x
mysql / mysql 5.0.5.0.21 5.0.5.0.21.x
mysql / mysql 4.1.15 4.1.15.x
mysql / mysql 4.1.8 4.1.8.x
mysql / mysql 4.1.14 4.1.14.x
mysql / mysql 4.1.12 4.1.12.x
mysql / mysql 5.0.16 5.0.16.x
oracle / mysql 4.1.6 4.1.6.x
oracle / mysql 4.1.7 4.1.7.x
oracle / mysql 4.1.9 4.1.9.x
oracle / mysql 4.1.11 4.1.11.x
oracle / mysql 4.1.16 4.1.16.x
oracle / mysql 4.1.18 4.1.18.x
oracle / mysql 4.1.19 4.1.19.x
oracle / mysql 4.1.20 4.1.20.x
oracle / mysql 5.0.6 5.0.6.x
oracle / mysql 5.0.11 5.0.11.x
oracle / mysql 5.0.12 5.0.12.x
oracle / mysql 5.0.13 5.0.13.x
oracle / mysql 5.0.18 5.0.18.x
oracle / mysql 5.0.19 5.0.19.x
oracle / mysql 5.0.9 5.0.9.x