CVE-2008-0226 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 91.6% (pctl 100)
Patch early
A public exploit exists.
Description
Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitrary code via (1) the ProcessOldClientHello function in handshake.cpp or (2) "input_buffer& operator>>" in yassl_imp.cpp.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 91.6% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-119 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2008-01-10 |
| Last modified | 2026-06-16 |
Affected (6)
| Vendor | Product |
|---|---|
| apple | mac os x |
| canonical | ubuntu linux |
| debian | debian linux |
| mysql | mysql |
| oracle | mysql |
| yassl | yassl |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | MySQL yaSSL (Windows) - SSL Hello Message Buffer Overflow (Metasploit) | 2010-05-09 |
| exploit-db | MySQL yaSSL (Linux) - SSL Hello Message Buffer Overflow (Metasploit) | 2010-05-09 |
| exploit-db | MySQL 6.0 yaSSL 1.7.5 - Hello Message Buffer Overflow (Metasploit) | 2008-01-04 |
References
- http://bugs.mysql.com/33814
- http://dev.mysql.com/doc/refman/5.1/en/news-5-1-23.html
- http://lists.apple.com/archives/security-announce/2008/Oct/msg00001.html
- http://secunia.com/advisories/28324
- http://secunia.com/advisories/28419
- http://secunia.com/advisories/28597
- http://secunia.com/advisories/29443
- http://secunia.com/advisories/32222
- http://securityreason.com/securityalert/3531
- http://support.apple.com/kb/HT3216
- http://www.debian.org/security/2008/dsa-1478
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:150
- http://www.securityfocus.com/archive/1/485810/100/0/threaded
- http://www.securityfocus.com/archive/1/485811/100/0/threaded
- http://www.securityfocus.com/bid/27140
- http://www.securityfocus.com/bid/31681
- http://www.ubuntu.com/usn/usn-588-1
- http://www.vupen.com/english/advisories/2008/0560/references
- http://www.vupen.com/english/advisories/2008/2780
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39429
→ the Explorer · watch your stack · NVD