Bug #37428 Potential security issue with UDFs - linux shellcode execution
Submitted: 16 Jun 2008 16:00 Modified: 8 Dec 2008 17:22
Reporter: Sergei Golubchik
Status: Closed
Category:Server: UDF Severity:S1 (Critical)
Version:5.0, 4.1, 4.0 OS:Any
Assigned to: Alexey Botchkov Target Version:5.0.67
Triage: D1 (Critical)

File: Maximum allowed size is 500KB.
Description:
Privacy:

If the data you need to attach is more than 500KB, you should create a compressed archive of the data and a README file that describes the data with a filename that includes the bug number (example: bug-data-37428.zip), and use FTP to upload the archive to ftp://ftp.mysql.com/pub/mysql/upload/. Once you have uploaded the file, add a comment to this bug to notify us about it. Note: This directory is unlistable, which means that once you have uploaded your file, you will not be able to see it.

All entries become the exclusive editorial property of Sun Microsystems, Inc.