Security Advisory

CVE-2009-0819

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2009-03-05 02:00:00
Last updated 2024-08-07 04:48:52
Assigner mitre
State PUBLISHED

Description

sql/item_xmlfunc.cc in MySQL 5.1 before 5.1.32 and 6.0 before 6.0.10 allows remote authenticated users to cause a denial of service (crash) via "an XPath expression employing a scalar expression as a FilterExpr with ExtractValue() or UpdateXML()," which triggers an assertion failure.