Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2008-4098

MySQL before 5.0.67 allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM table with modified (1) DATA DIRECTORY or (2) INDEX DIRECTORY arguments that are originally associated with pathnames without symlinks, and that can point to tables created at a future time at which a pathname is modified to contain a symlink to a subdirectory of the MySQL home data directory. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-4097.

  • Published: Sep 18, 2008
  • Updated: Apr 13, 2023
  • CVE: CVE-2008-4098
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.6
  • AV:N/AC:H/Au:S/C:P/I:P/A:P

CWEs:

Software From Fixed in
canonical / ubuntu_linux 6.06 6.06.x
canonical / ubuntu_linux 9.04 9.04.x
canonical / ubuntu_linux 7.10 7.10.x
canonical / ubuntu_linux 8.04 8.04.x
canonical / ubuntu_linux 8.10 8.10.x
canonical / ubuntu_linux 9.10 9.10.x
debian / debian_linux 5.0 5.0.x
mysql / mysql 5.0.5 5.0.5.x
mysql / mysql 5.0.10 5.0.10.x
mysql / mysql 5.0.54 5.0.54.x
mysql / mysql 5.0.0 5.0.0.x
mysql / mysql 5.0.15 5.0.15.x
mysql / mysql 5.0.17 5.0.17.x
mysql / mysql 5.0.3 5.0.3.x
mysql / mysql 5.0.44 5.0.44.x
mysql / mysql 5.0.66 5.0.66.x
mysql / mysql 5.0.56 5.0.56.x
mysql / mysql 5.0.60 5.0.60.x
mysql / mysql 5.0.24 5.0.24.x
mysql / mysql 5.0.2 5.0.2.x
mysql / mysql 5.0.30 5.0.30.x
mysql / mysql 5.0.20 5.0.20.x
mysql / mysql 5.0.1 5.0.1.x
mysql / mysql 5.0.4 5.0.4.x
mysql / mysql 5.0.36 5.0.36.x
mysql / mysql 5.0.16 5.0.16.x
oracle / mysql 5.0.48 5.0.48.x
oracle / mysql 5.0.50-sp1 5.0.50-sp1.x
oracle / mysql 5.0.50 5.0.50.x
oracle / mysql 5.0.51 5.0.51.x
oracle / mysql 5.0.23 5.0.23.x
oracle / mysql 5.0.25 5.0.25.x
oracle / mysql 5.0.26 5.0.26.x
oracle / mysql 5.0.28 5.0.28.x
oracle / mysql 5.0.30-sp1 5.0.30-sp1.x
oracle / mysql 5.0.32 5.0.32.x
oracle / mysql 5.0.34 5.0.34.x
oracle / mysql 5.0.36-sp1 5.0.36-sp1.x
oracle / mysql 5.0.38 5.0.38.x
oracle / mysql 5.0.40 5.0.40.x
oracle / mysql 5.0.41 5.0.41.x
oracle / mysql 5.0.42 5.0.42.x
oracle / mysql 5.0.44-sp1 5.0.44-sp1.x
oracle / mysql 5.0.45 5.0.45.x
oracle / mysql 5.0.46 5.0.46.x
oracle / mysql 5.0.52 5.0.52.x
oracle / mysql 5.0.56-sp1 5.0.56-sp1.x
oracle / mysql 5.0.58 5.0.58.x
oracle / mysql 5.0.62 5.0.62.x
oracle / mysql 5.0.64 5.0.64.x
oracle / mysql 5.0.60-sp1 5.0.60-sp1.x
oracle / mysql 5.0.66-sp1 5.0.66-sp1.x