ãã®èå¼±æ§ã¯2012å¹´5æ7æ¥ã«ãªãªã¼ã¹ããã MySQL ãã¼ã¸ã§ã³ 5.1.63 㨠5.5.24 ã«ããã¦ä¿®æ£ããã¾ãããèªè¨¼æã«æå®ãããã¹ã¯ã¼ãã¯ä½ã§ããããèªè¨¼è¦æ±ãç¹°ãè¿ãã¨ä¸å®ç¢ºçã§ãã°ã¤ã³ãå¯è½ã¨ããããªãå¥å¦ãªèå¼±æ§ã§ãããã¹ã¦ã®ç°å¢ã«ããã¦çºçããããã§ã¯ããã¾ããããæ»ææç«æã«ã¯æ·±å»ãªå½±é¿ãåãã¾ãã 該å½ãããã°ãã±ããã¯ä»¥ä¸ã§ãããªãªã¼ã¹ãã¼ã¸ã§ã³ãåæ§ã®ä¿®æ£ã§ããã MySQL Bugs: #64884: logins with incorrect password are allowed Rapid7 ã«ãã PoC ãå½±é¿ã確èªãããç°å¢çãçºãããã¦ãã¾ãã CVE-2012-2122: A Tragically Comedic Security Flaw in MySQL ã¢ããªã±ã¼ã·ã§ã³ã«å¯¾ããã³ã¼ãä¿®æ£ã¯1è¡ã®ã¿ãçºçããç°å¢ãéããã¦ãããé常


{{#tags}}- {{label}}
{{/tags}}