CVE-2005-4713

Publication date 31 December 2005

Last updated 17 July 2025


Ubuntu priority

Unspecified vulnerability in the SQL logging facility in PAM-MySQL 0.6.x before 0.6.2 and 0.7.x before 0.7pre3 allows remote attackers to cause a denial of service (segmentation fault) via unspecified vectors, probably involving the pam_mysql_sql_log function when being used in vsftpd, which does not include the IP address argument to an sprintf call.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
pam-mysql 7.04 feisty
Fixed 0.6.2-1
6.10 edgy
Fixed 0.6.2-1
6.06 LTS dapper
Fixed 0.6.2-1