VYPR
Unrated severityNVD Advisory· Published Feb 9, 2005· Updated Apr 16, 2026

CVE-2004-0957

CVE-2004-0957

Description

Unknown vulnerability in MySQL 3.23.58 and earlier, when a local user has privileges for a database whose name includes a "_" (underscore), grants privileges to other databases that have similar names, which can allow the user to conduct unauthorized activities.

Affected products

99
  • OpenPKG/Openpkg3 versions
    cpe:2.3:a:openpkg:openpkg:2.1:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:openpkg:openpkg:2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:openpkg:openpkg:2.2:*:*:*:*:*:*:*
    • cpe:2.3:a:openpkg:openpkg:current:*:*:*:*:*:*:*
  • cpe:2.3:a:oracle:mysql:3.20:*:*:*:*:*:*:*+ 79 more
    • cpe:2.3:a:oracle:mysql:3.20:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.20.32a:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.21:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.22:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.22.26:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.22.27:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.22.28:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.22.29:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.22.30:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.22.32:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.2:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.3:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.4:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.5:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.8:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.9:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.10:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.22:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.23:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.24:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.25:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.26:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.27:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.28:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.28:gamma:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.29:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.30:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.31:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.32:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.33:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.34:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.36:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.37:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.38:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.39:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.40:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.41:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.42:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.43:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.44:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.45:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.46:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.47:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.48:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.49:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.50:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.51:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.52:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.53:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.53a:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.54:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.54a:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.4:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.5:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.5a:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.6:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.7:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.7:gamma:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.8:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.8:gamma:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.9:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.9:gamma:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.10:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.11:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.11:gamma:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.12:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.13:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.14:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.15:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.18:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.20:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.55:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.56:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.58:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:3.23.59:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:oracle:mysql:4.0.3:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux:3.0:*:advanced_server:*:*:*:*:*+ 2 more
    • cpe:2.3:o:redhat:enterprise_linux:3.0:*:advanced_server:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:3.0:*:enterprise_server:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:3.0:*:workstation_server:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux_desktop:3.0:*:*:*:*:*:*:*
  • SUSE S.A./Linux7 versions
    cpe:2.3:o:suse:suse_linux:8.0:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:o:suse:suse_linux:8.0:*:*:*:*:*:*:*
    • cpe:2.3:o:suse:suse_linux:8.1:*:*:*:*:*:*:*
    • cpe:2.3:o:suse:suse_linux:8.2:*:*:*:*:*:*:*
    • cpe:2.3:o:suse:suse_linux:9.0:*:*:*:*:*:*:*
    • cpe:2.3:o:suse:suse_linux:9.0:*:x86_64:*:*:*:*:*
    • cpe:2.3:o:suse:suse_linux:9.1:*:*:*:*:*:*:*
    • cpe:2.3:o:suse:suse_linux:9.2:*:*:*:*:*:*:*
  • cpe:2.3:o:trustix:secure_linux:1.5:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:trustix:secure_linux:1.5:*:*:*:*:*:*:*
    • cpe:2.3:o:trustix:secure_linux:2.0:*:*:*:*:*:*:*
    • cpe:2.3:o:trustix:secure_linux:2.1:*:*:*:*:*:*:*
  • Ubuntu/Linux2 versions
    cpe:2.3:o:ubuntu:ubuntu_linux:4.1:*:ia64:*:*:*:*:*+ 1 more
    • cpe:2.3:o:ubuntu:ubuntu_linux:4.1:*:ia64:*:*:*:*:*
    • cpe:2.3:o:ubuntu:ubuntu_linux:4.1:*:ppc:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

8

News mentions

0

No linked articles in our index yet.