High severity7.8NVD Advisory· Published Oct 11, 2002· Updated Apr 16, 2026
CVE-2002-0969
CVE-2002-0969
Description
Buffer overflow in MySQL daemon (mysqld) before 3.23.50, and 4.0 beta before 4.02, on the Win32 platform, allows local users to execute arbitrary code via a long "datadir" parameter in the my.ini initialization file, whose permissions on Windows allow Full Control to the Everyone group.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- archives.neohapsis.com/archives/vulnwatch/2002-q4/0004.htmlnvdBroken LinkExploitPatchVendor Advisory
- www.iss.net/security_center/static/10243.phpnvdBroken LinkVendor Advisory
- www.securityfocus.com/bid/5853nvdBroken LinkThird Party AdvisoryVDB Entry
- marc.infonvdMailing List
- www.mysql.com/documentation/mysql/bychapter/manual_News.htmlnvdBroken Link
- www.westpoint.ltd.uk/advisories/wp-02-0003.txtnvdBroken Link
News mentions
0No linked articles in our index yet.