Re: [Full-Disclosure] MySQL and the user "su"

From: Kristian Koehntopp (kris_at_koehntopp.de)
Date: 12/31/04

  • Next message: Eric Romang / ZATAZ: "Re: [Full-Disclosure] /bin/rm file access vulnerability"
    Date: Fri, 31 Dec 2004 08:11:45 +0100
    To: Sascha Wolf <swolf@x-project.net>
    
    

    > I have today determined that I can connect to a local MySQL-server per
    > "mysql -usu". I regard that to error, can that someone confirm?

    You have entries in your mysql.user table that contain the hostname
    localhost and have an empty username field, I presume. If so, please
    read up on MySQL permissions.

    Kristian
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Eric Romang / ZATAZ: "Re: [Full-Disclosure] /bin/rm file access vulnerability"

    Relevant Pages

    • Re: X apps initially slow to start
      ... Remember that you need a line for your hostname TOO! ... > 127.0.0.1 localhost other.localdomain ... That's why it should be in DNS, and why the name should be ... With your entries in /etc/hosts. ...
      (comp.os.linux.setup)
    • Re: X apps initially slow to start
      ... Remember that you need a line for your hostname TOO! ... > 127.0.0.1 localhost other.localdomain ... That's why it should be in DNS, and why the name should be ... With your entries in /etc/hosts. ...
      (comp.os.linux.x)
    • Re: NOQUEUE: SYSERR (root): host "localhost" unknown ?
      ... Sendmail is trying to convert the hostname 'localhost' into an IP ... the straight 'localhost' entries. ...
      (freebsd-questions)
    • Re: telnet on local LAN question (progress?)
      ... chalupa.localdomain chalupa localhost.localdomain localhost localhost4 ... having some strange names in your mail headers. ... And not just with Linux boxes. ... worked find when the hostname was entered on the 127.0.0.1 line but some ...
      (Fedora)
    • Re: (was Re: setting FQDN in /etc/hosts)
      ... There should be a space before the word localhost, ... the hostname command will tell you what ... 503 Leafnode must have a unique fully-qualified domain name. ... ## This is the NNTP server leafnode fetches its news from. ...
      (news.software.readers)