A remote overflow exists in mSQL. The mSQL fails to validate user input and cause a buffer overflow. By sending an overly long username (10240 characters) to "msqld.c" in debug mode, an attacker can cause a buffer overflow and crash the system or execute arbitrary code, resulting in a loss of integrity or availability.
Currently, there are no known workarounds or upgrades to correct this issue. However, the vulnerability reporter (Sekure) has released an unofficial patch to address this vulnerability.