Family: Mandrake Local Security Checks --> Category: infos
MDKSA-2006:064: MySQL Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the MySQL package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory MDKSA-2006:064 (MySQL).
MySQL allows local users to bypass logging mechanisms via SQL queries that
contain the NULL character, which are not properly handled by the
mysql_real_query function. Updated packages have been patched to correct this
Solution : http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2006:064
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.