CVE-2006-4226

Impact:
Low
Public Date:
2006-02-22
Bugzilla:
203428: CVE-2006-4226 mysql-server create database privilege escalation

The MITRE CVE dictionary describes this issue as:

MySQL before 4.1.21, 5.0 before 5.0.25, and 5.1 before 5.1.12, when run on case-sensitive filesystems, allows remote authenticated users to create or access a database when the database name differs only in case from a database for which they have permissions.

Find out more about CVE-2006-4226 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

Red Hat is aware of this issue and is tracking it via the following bug:
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=203426

The Red Hat Security Response Team has rated this issue as having low security impact, a future update may address this flaw. More information regarding issue severity can be found here:
http://www.redhat.com/security/updates/classification/

This issue does not affect Red Hat Enterprise Linux 2.1 or 3

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 4 (mysql) RHSA-2007:0152 2007-04-03
Red Hat Application Stack v1 for Enterprise Linux AS (v.4) (mysql) RHSA-2007:0083 2007-02-19

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.