Secunia Research Advisory – A vulnerability in MySQL version 4.0.14 and below, due to a boundary error when checking passwords before hashing and storing them in the User table, can be exploited by malicious users to escalate their privileges via supplying a value longer than 16 characters using set password.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/31626/mysqlpriv.txt
Source: https://packetstormsecurity.com/files/31626/mysqlpriv.txt.html

