MySQL: Format string vulnerability by manipulation with database instances (crash)
Published Jul 13, 2009
8.5
HIGHCVSS 2.0
EPSS 10.59%
Description
Multiple format string vulnerabilities in the dispatch_command function in libmysqld/sql_parse.cc in mysqld in MySQL 4.0.0 through 5.0.83 allow remote authenticated users to cause a denial of service (daemon crash) and possibly have unspecified other impact via format string specifiers in a database name in a (1) COM_CREATE_DB or (2) COM_DROP_DB request. NOTE: some of these details are obtained from third party information.
Affected products
No data.
- 4.1.0
- 4.1.2
- 4.1.3
- 4.1.8
- 4.1.10
- 4.1.12
- 4.1.13
- 4.1.14
- 4.1.15
- 4.1.23
- 5.0.0
- 5.0.1
- 5.0.2
- 5.0.3
- 5.0.4
- 5.0.5
- 5.0.5.0.21
- 5.0.10
- 5.0.15
- 5.0.16
- 5.0.17
- 5.0.20
- 5.0.22.1.0.1
- 5.0.24
- 5.0.30
- 5.0.36
- 5.0.44
- 5.0.54
- 5.0.56
- 5.0.60
- 5.0.66
- 5.0.82
- 4.0.0
- 4.0.1
- 4.0.2
- 4.0.3
- 4.0.4
- 4.0.5
- 4.0.5a
- 4.0.6
- 4.0.7
- 4.0.7
- 4.0.8
- 4.0.8
- 4.0.9
- 4.0.9
- 4.0.10
- 4.0.11
- 4.0.11
- 4.0.12
- 4.0.13
- 4.0.14
- 4.0.15
- 4.0.16
- 4.0.17
- 4.0.18
- 4.0.19
- 4.0.20
- 4.0.21
- 4.0.23
- 4.0.24
- 4.0.25
- 4.0.26
- 4.0.27
- 4.1.0
- 4.1.1
- 4.1.2
- 4.1.3
- 4.1.4
- 4.1.5
- 4.1.6
- 4.1.7
- 4.1.9
- 4.1.11
- 4.1.16
- 4.1.17
- 4.1.18
- 4.1.19
- 4.1.20
- 4.1.21
- 4.1.22
- 5.0.0
- 5.0.3
- 5.0.6
- 5.0.7
- 5.0.8
- 5.0.9
- 5.0.11
- 5.0.12
- 5.0.13
- 5.0.14
- 5.0.18
- 5.0.19
- 5.0.21
- 5.0.22
- 5.0.23
- 5.0.25
- 5.0.26
- 5.0.27
- 5.0.30
- 5.0.32
- 5.0.33
- 5.0.37
- 5.0.38
- 5.0.41
- 5.0.42
- 5.0.45
- 5.0.50
- 5.0.51
- 5.0.51a
- 5.0.52
- 5.0.75
- 5.0.77
- 5.0.81
- 5.0.83
No data.
Red Hat Enterprise Linux 4
mysql-0:4.1.22-2.el4_8.3
Fixed · RHSA-2010:0110
Red Hat Enterprise Linux 5
mysql-0:5.0.77-3.el5
Fixed · RHSA-2009:1289
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 4 | mysql-0:4.1.22-2.el4_8.3 | Fixed | RHSA-2010:0110 |
| Red Hat Enterprise Linux 5 | mysql-0:5.0.77-3.el5 | Fixed | RHSA-2009:1289 |
No package ranges for this CVE.
Remediation
Red Hat statement
Red Hat is aware of this issue and is tracking it via the following bug: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-2446 The Red Hat Product Security has rated this issue as having low security impact, future MySQL package updates may address this flaw for Red Hat Enterprise Linux 3 and Red Hat Application Stack 2.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:M/Au:S/C:C/I:C/A:C
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (28 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 10.59% (0.10586) | 95.65th | v5 (v2026.06.15) |
| Jun 15, 2026 | 10.59% (0.10586) | 95.19th | v5 (v2026.06.15) |
| Feb 11, 2026 | 7.27% (0.07267) | 91.44th | v4 (v2025.03.14) |
| Dec 28, 2025 | 4.62% (0.04623) | 88.92th | v4 (v2025.03.14) |
| Dec 27, 2025 | 10.41% (0.10405) | 93.00th | v4 (v2025.03.14) |
| Oct 28, 2025 | 4.62% (0.04623) | 88.76th | v4 (v2025.03.14) |
| Oct 27, 2025 | 10.41% (0.10405) | 92.89th | v4 (v2025.03.14) |
| Oct 1, 2025 | 4.62% (0.04623) | 88.86th | v4 (v2025.03.14) |
| Jul 30, 2025 | 11.19% (0.11194) | 93.21th | v4 (v2025.03.14) |
| Jun 1, 2025 | 4.39% (0.04393) | 88.47th | v4 (v2025.03.14) |
| Mar 30, 2025 | 5.51% (0.05515) | 89.27th | v4 (v2025.03.14) |
| Mar 29, 2025 | 8.02% (0.08019) | 86.57th | v4 (v2025.03.14) |
| Mar 17, 2025 | 5.51% (0.05515) | 89.53th | v4 (v2025.03.14) |
| Jan 21, 2025 | 17.39% (0.17386) | 96.11th | v3 (v2023.03.01) |
| Dec 17, 2024 | 19.33% (0.19328) | 96.27th | v3 (v2023.03.01) |
| Nov 9, 2024 | 16.78% (0.16777) | 96.16th | v3 (v2023.03.01) |
| Oct 6, 2024 | 8.76% (0.08762) | 94.67th | v3 (v2023.03.01) |
| Jul 26, 2024 | 7.73% (0.07732) | 94.23th | v3 (v2023.03.01) |
| Jun 19, 2024 | 15.53% (0.15528) | 95.95th | v3 (v2023.03.01) |
| Apr 2, 2024 | 6.78% (0.06784) | 93.75th | v3 (v2023.03.01) |
| Nov 30, 2023 | 10.00% (0.10003) | 94.30th | v3 (v2023.03.01) |
| Aug 31, 2023 | 10.56% (0.10563) | 94.28th | v3 (v2023.03.01) |
| Mar 7, 2023 | 13.01% (0.13014) | 94.58th | v3 (v2023.03.01) |
| Mar 6, 2023 | 10.86% (0.10859) | 94.71th | v2 (v2022.01.01) |
| Jul 18, 2022 | 10.86% (0.10859) | 94.44th | v2 (v2022.01.01) |
| Jul 17, 2022 | 11.06% (0.11063) | 94.71th | v2 (v2022.01.01) |
| Apr 1, 2022 | 10.86% (0.10859) | 94.27th | v2 (v2022.01.01) |
| Feb 4, 2022 | 10.86% (0.10859) | 88.35th | v2 (v2022.01.01) |
References (22)
- http://archives.neohapsis.com/archives/fulldisclosure/2009-07/0058.html mailing-listx_refsource_FULLDISCExploit
- http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html vendor-advisoryx_refsource_APPLE
- http://secunia.com/advisories/35767 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/36566 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/38517 third-party-advisoryx_refsource_SECUNIA
- http://securitytracker.com/id?1022533 vdb-entryx_refsource_SECTRACK
- http://support.apple.com/kb/HT4077 x_refsource_CONFIRM
- http://ubuntu.com/usn/usn-897-1 vendor-advisoryx_refsource_UBUNTU
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:179 vendor-advisoryx_refsource_MANDRIVA
- http://www.osvdb.org/55734 vdb-entryx_refsource_OSVDBPatch
- http://www.redhat.com/support/errata/RHSA-2009-1289.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2010-0110.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/archive/1/504799/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/35609 vdb-entryx_refsource_BIDExploit
- http://www.ubuntu.com/usn/USN-1397-1 vendor-advisoryx_refsource_UBUNTU
- http://www.vupen.com/english/advisories/2009/1857 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2009-2446 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=511020 Issue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/51614 vdb-entryx_refsource_XF
- https://nvd.nist.gov/vuln/detail/CVE-2009-2446
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11857 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2009-2446
Change history (0)
No recorded changes yet.