全球主机交流论坛

 找回密码
 注册

QQ登录

只需一步,快速开始

IP归属甄别会员请立即修改密码
查看: 2197|回复: 15
打印 上一主题 下一主题

MySQL爆出大漏洞,只要知道用户名就可登录

[复制链接]
1#
发表于 2012-6-11 12:18:35 | 只看该作者
0day代码没找到
2#
 楼主| 发表于 2012-6-11 11:17:04 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
本帖最后由 lsylsy2 于 2012-6-11 11:19 编辑

http://seclists.org/oss-sec/2012/q2/493

All MariaDB and MySQL versions up to 5.1.61, 5.2.11, 5.3.5, 5.5.22 are
vulnerable.
MariaDB versions from 5.1.62, 5.2.12, 5.3.6, 5.5.23 are not.
MySQL versions from 5.1.63, 5.5.24, 5.6.6 are not.

只要知道用户名【含root】,无需密码便可登录
迅速升级吧……

Update:不用那么担心,Linux下GCC默认MySQL基本没有漏洞

But practically it's better than it looks - many MySQL/MariaDB builds
are not affected by this bug.

Whether a particular build of MySQL or MariaDB is vulnerable, depends on
how and where it was built. A prerequisite is a memcmp() that can return
an arbitrary integer (outside of -128..127 range). To my knowledge gcc
builtin memcmp is safe, BSD libc memcmp is safe. Linux glibc
sse-optimized memcmp is not safe, but gcc usually uses the inlined
builtin version.

As far as I know, official vendor MySQL and MariaDB binaries are not
vulnerable.

References:

MariaDB bug report: https://mariadb.atlassian.net/browse/MDEV-212
MariaDB fix: http://bazaar.launchpad.net/~maria-captains/maria/5.1/revision/3144

MySQL bug report: http://bugs.mysql.com/bug.php?id=64884
MySQL fix: http://bazaar.launchpad.net/~mysql/mysql-server/5.1/revision/3560.10.17
MySQL changelog:
  http://dev.mysql.com/doc/refman/5.1/en/news-5-1-63.html
  http://dev.mysql.com/doc/refman/5.5/en/news-5-5-24.html
3#
发表于 2012-6-11 11:17:36 | 只看该作者
求利用工具。
4#
发表于 2012-6-11 11:18:45 来自手机 | 只看该作者
0day级别的,各位还是升级吧!
5#
发表于 2012-6-11 11:19:32 | 只看该作者
Whether a particular build of MySQL or MariaDB is vulnerable, depends on
how and where it was built. A prerequisite is a memcmp() that can return
an arbitrary integer (outside of -128..127 range). To my knowledge gcc
builtin memcmp is safe, BSD libc memcmp is safe. Linux glibc
sse-optimized memcmp is not safe, but gcc usually uses the inlined
builtin version.

As far as I know, official vendor MySQL and MariaDB binaries are not
vulnerable.

6#
发表于 2012-6-11 11:20:03 | 只看该作者
这个好像要phpmyadmin 才能登录吧,
7#
发表于 2012-6-11 11:21:29 | 只看该作者
官方一定有紧急升级的
8#
发表于 2012-6-11 11:25:24 来自手机 | 只看该作者
不会这么严重吧...汗...
9#
发表于 2012-6-11 11:26:11 | 只看该作者
我擦,这么严重?
10#
发表于 2012-6-11 11:36:54 | 只看该作者
这么吓人
您需要登录后才可以回帖 登录 | 注册

本版积分规则

Archiver|手机版|小黑屋|全球主机交流论坛

GMT+8, 2025-10-29 16:05 , Processed in 0.077570 second(s), 10 queries , Gzip On, MemCache On.

Powered by Discuz! X3.4

© 2001-2023 Discuz! Team.

快速回复 返回顶部 返回列表