Candidate: CVE-2009-2942 PublicDate: 2009-10-22 16:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2942 Description: The mysql-ocaml bindings 1.0.4 for MySQL do not properly support the mysql_real_escape_string function, which might allow remote attackers to leverage escaping issues involving multibyte character encodings. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_mysql-ocaml: vendor: http://www.debian.org/security/2009/dsa-1910 upstream_mysql-ocaml: released (1.0.4-7) dapper_mysql-ocaml: ignored (reached end-of-life) hardy_mysql-ocaml: released (1.0.4-4+lenny1build0.8.04.1) intrepid_mysql-ocaml: released (1.0.4-4+lenny1build0.8.10.1) jaunty_mysql-ocaml: released (1.0.4-4+lenny1build0.9.04.1) karmic_mysql-ocaml: ignored (reached end-of-life) lucid_mysql-ocaml: not-affected (1.0.4-7) maverick_mysql-ocaml: not-affected (1.0.4-7) natty_mysql-ocaml: not-affected (1.0.4-7) devel_mysql-ocaml: not-affected (1.0.4-7)