Amazines Free Article Archive
www.amazines.com - Thursday, April 18, 2024
Read about the most recent changes and happenings at Amazines.com
Log into your account or register as a new author. Start submitting your articles right now!
Search our database for articles.
Subscribe to receive articles emailed straight to your email account. You may choose multiple categories.
View our newest articles submitted by our authors.
View our most top rated articles rated by our visitors.
* Please note that this is NOT the ARTICLE manager
Add a new EZINE, or manage your EZINE submission.
Add fresh, free web content to your site such as newest articles, web tools, and quotes with a single piece of code!
Home What's New? Submit/Manage Articles Latest Posts Top Rated Article Search
Google
Subscriptions Manage Ezines
CATEGORIES
 Article Archive
 Advertising (133573)
 Advice (161671)
 Affiliate Programs (34799)
 Art and Culture (73855)
 Automotive (145712)
 Blogs (75614)
 Boating (9851)
 Books (17223)
 Buddhism (4130)
 Business (1330636)
 Business News (426446)
 Business Opportunities (366518)
 Camping (10973)
 Career (72795)
 Christianity (15848)
 Collecting (11638)
 Communication (115089)
 Computers (241951)
 Construction (38962)
 Consumer (49953)
 Cooking (17080)
 Copywriting (6733)
 Crafts (18203)
 Cuisine (7549)
 Current Affairs (20319)
 Dating (45908)
 EBooks (19703)
 E-Commerce (48258)
 Education (185521)
 Electronics (83524)
 Email (6438)
 Entertainment (159854)
 Environment (28970)
 Ezine (3040)
 Ezine Publishing (5453)
 Ezine Sites (1551)
 Family & Parenting (111007)
 Fashion & Cosmetics (196605)
 Female Entrepreneurs (11853)
 Feng Shui (134)
 Finance & Investment (310615)
 Fitness (106469)
 Food & Beverages (63045)
 Free Web Resources (7941)
 Gambling (30227)
 Gardening (25202)
 Government (10519)
 Health (630137)
 Hinduism (2206)
 Hobbies (44083)
 Home Business (91657)
 Home Improvement (251210)
 Home Repair (46243)
 Humor (4723)
 Import - Export (5459)
 Insurance (45104)
 Interior Design (29616)
 International Property (3488)
 Internet (191029)
 Internet Marketing (146687)
 Investment (22861)
 Islam (1161)
 Judaism (1352)
 Law (80506)
 Link Popularity (4596)
 Manufacturing (20914)
 Marketing (99316)
 MLM (14140)
 Motivation (18233)
 Music (27000)
 New to the Internet (9496)
 Non-Profit Organizations (4048)
 Online Shopping (129734)
 Organizing (7813)
 Party Ideas (11855)
 Pets (38165)
 Poetry (2229)
 Press Release (12689)
 Public Speaking (5643)
 Publishing (7566)
 Quotes (2407)
 Real Estate (126700)
 Recreation & Leisure (95495)
 Relationships (87674)
 Research (16182)
 Sales (80350)
 Science & Technology (110290)
 Search Engines (23514)
 Self Improvement (153300)
 Seniors (6220)
 Sexuality (36010)
 Small Business (49311)
 Software (83033)
 Spiritual (23516)
 Sports (116155)
 Tax (7663)
 Telecommuting (34070)
 Travel & Tourism (308304)
 UK Property Investment (3123)
 Video Games (13382)
 Web Traffic (11790)
 Website Design (56919)
 Website Promotion (36663)
 World News (1000+)
 Writing (35844)
Author Spotlight
TAL BARNEA

Tal is an electrical engineer with over 25 years of expertise with hardware, software, mechanical an...more
MANMOHAN SINGH

Digital marketing professional with 8 years of experience. A good listner, Stratgist and fun loving ...more
LEMUEL ASIBAL

Lemuel Asibal is a web content writer who also ventures on writing articles and blog posts about any...more
TUSHAR BHATIA

Tushar Bhatia is the Founder President of EmpXtrack Inc with over 19 years of experience in the soft...more
BRENDA PANIN

Passionate blogger and a great animal lover. ...more


Mysql vulnerability allows attackers to bypass passwordverification - 9W UV Lamp Manufacturer by qrt etget





Article Author Biography
Mysql vulnerability allows attackers to bypass passwordverification - 9W UV Lamp Manufacturer by
Article Posted: 03/17/2013
Article Views: 54
Articles Written: 2163
Word Count: 513
Article Votes: 0
AddThis Social Bookmark Button

Mysql vulnerability allows attackers to bypass passwordverification - 9W UV Lamp Manufacturer


 
Business,Business News,Business Opportunities
Security researchers have released details about a vulnerability inthe MySQL server that could allow potential attackers to accessMySQL databases without inputting proper authenticationcredentials. The vulnerability is identified as CVE-2012-2122 and was addressedin MySQL 5.1.63 and 5.5.25 in May. However, many server administrators might not be aware ofits impact, because the changelog for those versions contained verylittle information about the security bug. [ Discover what's new in business applications with InfoWorld's Technology: Applications newsletter.

Keep up with the latest approaches to managing informationoverload and staying compliant in InfoWorld's interactive Data Explosion iGuide . ] The vulnerability can only be exploited if MySQL was built on asystem where the memcmp() function can return values outside the-128 to 127 range. This is the case for Linux systems that use anSSE-optimized glibc (GNU C library). If MySQL was built on such a system, the code that compares thecryptographic hash of a user-inputted password to the hash storedin the database for a particular account will sometimes allowauthentication even if the supplied password is incorrect. The probability of triggering this bug successfully on systems thatmeet the prerequisite is about 1 in 256, said Sergei Golubchik, thesecurity coordinator for MariaDB, in an email sent to the oss-sec mailing list on Saturday.

"~300 attempts takesonly a fraction of second, so basically account password protectionis as good as nonexistent." MariaDB is a community-developed branch of MySQL that was alsoaffected by this vulnerability. The flaw was patched in MariaDBversions 5.1.62, 5.2.12, 5.3.6 and 5.5.23 back in April. A module for exploiting this vulnerability was added to the popularMetasploit penetration testing framework on Sunday. Afterexploiting the vulnerability, the module copies the MySQL server'smaster user table, which contains all password hashes. An attacker can crack the password hashes using dictionary attacksand maintain their unauthorized access on the server even if thisauthentication bypass vulnerability is later fixed.

"If you areapproaching this issue from the perspective of a penetrationtester, this will be one of the most useful MySQL tricks for sometime to come," Metasploit chief architect HD Moore said in a blog post on Monday. Moore also published a list of Linux distributions for which olderMySQL builds were found to be vulnerable to this attack. Theseinclude 64-bit versions of Ubuntu 10.04, 10.10, 11.04, 11.10 and12.04, the 64-bit version of OpenSuSE 12.1, the 64-bit version ofthe Debian unstable branch, the 64-bit version of Fedora 16 and anunspecified version of Arch Linux. Most Linux vendors distribute pre-compiled MySQL builds throughtheir own repositories and patched builds should already beavailable for the most popular distributions. Users are advised toupgrade to non-vulnerable builds as soon as possible, especiallysince the exploit code for this vulnerability is now public.

No official patch is available for MySQL 5.0.x, because thatversion of the database server is no longer supported by Oracle.However, some Linux vendors might backport the patch from MySQL 5.1or 5.5.

We are high quality suppliers, our products such as 9W UV Lamp Manufacturer , UV Germicidal Lamps Manufacturer for oversee buyer. To know more, please visits Micro Needle Roller.

Related Articles - 9W UV Lamp Manufacturer, UV Germicidal Lamps Manufacturer,

Email this Article to a Friend!

Receive Articles like this one direct to your email box!
Subscribe for free today!

 Rate This Article  
Completely useless, should be removed from directory.
Minimal useful information.
Decent and informative.
Great article, very informative and helpful.
A 'Must Read'.

 

Do you Agree or Disagree? Have a Comment? POST IT!

 Reader Opinions 
Submit your comments and they will be posted here.
Make this comment or to the Author only:
Name:
Email:
*Your email will NOT be posted. This is for administrative purposes only.
Comments: *Your Comments WILL be posted to the AUTHOR ONLY if you select PRIVATE and to this PUBLIC PAGE if you select PUBLIC, so write accordingly.
 
Please enter the code in the image:



 Author Login 
LOGIN
Register for Author Account

 

Advertiser Login

 

ADVERTISE HERE NOW!
   Limited Time $60 Offer!
   90  Days-1.5 Million Views  

 

Great Paranormal Romance


TIM FAY

After 60-plus years of living, I am just trying to pass down some of the information that I have lea...more
LAURA JEEVES

At LeadGenerators, we specialise in content-led Online Marketing Strategies for our clients in the t...more
ALEX BELSEY

I am the editor of QUAY Magazine, a B2B publication based in the South West of the UK. I am also the...more
GENE MYERS

Author of four books and two screenplays; frequent magazine contributor. I have four other books "in...more
SUSAN FRIESEN

Located in the lower mainland of B.C., Susan Friesen is a visionary brand strategist, entrepreneur, ...more
STEVERT MCKENZIE

Stevert Mckenzie, Travel Enthusiast. ...more
STEPHEN BYE

Steve Bye is currently a fiction writer, who published his first novel, ‘Looking Forward Through the...more
SHALINI MITTAL

A postgraduate in Fashion Technology. Shalini is a writer at heart! Writing for her is an expression...more
ADRIAN JOELE

I have been involved in nutrition and weight management for over 12 years and I like to share my kn...more
JAMES KENNY

James is a Research Enthusiast that focuses on the understanding of how things work and can be impro...more

HomeLinksAbout UsContact UsTerms of UsePrivacy PolicyFAQResources
Copyright © 2024, All rights reserved.
Some pages may contain portions of text relating to certain topics obtained from wikipedia.org under the GNU FDL license