Unrated severityNVD Advisory· Published Nov 3, 2004· Updated Apr 16, 2026
CVE-2004-0836
CVE-2004-0836
Description
Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service and possibly execute arbitrary code via a DNS response with a large address length (h_length).
Affected products
2- cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
13- www.redhat.com/support/errata/RHSA-2004-597.htmlnvdPatchVendor Advisory
- www.redhat.com/support/errata/RHSA-2004-611.htmlnvdPatchVendor Advisory
- bugs.mysql.com/bug.phpnvdExploitVendor Advisory
- lists.mysql.com/internals/14726nvdVendor Advisory
- marc.infonvdMailing ListThird Party Advisory
- secunia.com/advisories/12305/nvdThird Party Advisory
- www.debian.org/security/2004/dsa-562nvdThird Party Advisory
- www.gentoo.org/security/en/glsa/glsa-200410-22.xmlnvdThird Party Advisory
- www.securityfocus.com/bid/10981nvdThird Party AdvisoryVDB Entry
- www.trustix.org/errata/2004/0054/nvdVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/17047nvdThird Party AdvisoryVDB Entry
- distro.conectiva.com.br/atualizacoes/nvdBroken Link
- www.ciac.org/ciac/bulletins/p-018.shtmlnvdBroken Link
News mentions
0No linked articles in our index yet.