Referring to my post "instant slave crash (signal 11) on 'set password'" to
[EMAIL PROTECTED]:

The scenario is still valid for 3.23.31. This means that any valid mysql user
can cause the replicating slaves to crash using the 'set password' command.

So any valid user can even unintendedly cause a denial of service condition for
the mysql slaves, as any valid user is allowed to use the 'set password'
command to change his or her password.

This is a real bad problem. Could somebody of the mysql team please look into
this?


Andreas Steinmetz
D.O.M. Datenverarbeitung GmbH

---------------------------------------------------------------------
Before posting, please check:
   http://www.mysql.com/manual.php   (the manual)
   http://lists.mysql.com/           (the list archive)

To request this thread, e-mail <[EMAIL PROTECTED]>
To unsubscribe, e-mail <[EMAIL PROTECTED]>
Trouble unsubscribing? Try: http://lists.mysql.com/php/unsubscribe.php

Reply via email to