AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2010-3837

MEDIUM · CVSS 4 EPSS 3.39%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-01-14 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2010-3837
Severity
MEDIUM
CVSS
4
EPSS
3.39%

Original Filing — NVD Description

MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (server crash) via a prepared statement that uses GROUP_CONCAT with the WITH ROLLUP modifier, probably triggering a use-after-free error when a copied object is modified in a way that also affects the original object.