ALT-BU-2015-2601-1
Branch t7 update bulletin.
Closed vulnerabilities
BDU:2014-00011
Уязвимость системы управления базами данных MySQL, позволяющая злоумышленнику, прошедшему аутентификацию, вызвать отказ в обслуживании
BDU:2014-00012
Уязвимость системы управления базами данных MySQL, позволяющая злоумышленнику, прошедшему аутентификацию, вызвать отказ в обслуживании
BDU:2014-00338
Уязвимость системы управления базами данных MySQL, позволяющая злоумышленнику вызвать отказ в обслуживании
BDU:2014-00339
Уязвимость системы управления базами данных Marida DB, позволяющая злоумышленнику вызвать отказ в обслуживании
BDU:2014-00340
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00341
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00343
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00345
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00346
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00347
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00348
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00350
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00351
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00352
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00353
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00354
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00355
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00356
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00357
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00360
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00361
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2015-09979
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю, прошедшим аутентификацию, нарушить доступность данных
BDU:2015-09981
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09982
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09986
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09988
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09991
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09993
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09994
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-11052
Уязвимость системы управления базами данных MySQL, позволяющая нарушителю нарушить доступность защищаемой информации
BDU:2016-00163
Уязвимость системы управления базами данных MySQL, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2013-1502
Unspecified vulnerability in Oracle MySQL 5.5.30 and earlier and 5.6.9 and earlier allows local users to affect availability via unknown vectors related to Server Partition.
- 53372
- 53372
- GLSA-201308-06
- GLSA-201308-06
- MDVSA-2013:150
- MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html
Modified: 2024-11-21
CVE-2013-1511
Unspecified vulnerability in Oracle MySQL 5.5.30 and earlier and 5.6.10 and earlier allows remote authenticated users to affect availability via unknown vectors related to InnoDB.
- 53372
- 53372
- GLSA-201308-06
- GLSA-201308-06
- MDVSA-2013:150
- MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html
Modified: 2024-11-21
CVE-2013-1532
Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier allows remote authenticated users to affect availability via unknown vectors related to Information Schema.
Modified: 2024-11-21
CVE-2013-1544
Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier allows remote authenticated users to affect availability via unknown vectors related to Data Manipulation Language.
Modified: 2024-11-21
CVE-2013-1861
MariaDB 5.5.x before 5.5.30, 5.3.x before 5.3.13, 5.2.x before 5.2.15, and 5.1.x before 5.1.68, and Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote attackers to cause a denial of service (crash) via a crafted geometry feature that specifies a large number of points, which is not properly handled when processing the binary representation of this feature, related to a numeric calculation error.
- [Commits] 20130305 Rev 3682: TODO-424 geometry query crashes server. in file:///home/hf/wmar/todo-424/
- [Commits] 20130305 Rev 3682: TODO-424 geometry query crashes server. in file:///home/hf/wmar/todo-424/
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- [oss-security] 20130513 CVE-2013-1861 for MySQL/MariaDB: geometry query crashes mysqld
- [oss-security] 20130513 CVE-2013-1861 for MySQL/MariaDB: geometry query crashes mysqld
- 52639
- 52639
- 54300
- 54300
- GLSA-201409-04
- GLSA-201409-04
- DSA-2818
- DSA-2818
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- 91415
- 91415
- 58511
- 58511
- USN-1909-1
- USN-1909-1
- https://bugzilla.redhat.com/show_bug.cgi?id=919247
- https://bugzilla.redhat.com/show_bug.cgi?id=919247
- mysql-mariadb-cve20131861-dos(82895)
- mysql-mariadb-cve20131861-dos(82895)
- https://mariadb.atlassian.net/browse/MDEV-4252
- https://mariadb.atlassian.net/browse/MDEV-4252
Modified: 2024-11-21
CVE-2013-2375
Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
Modified: 2024-11-21
CVE-2013-2376
Unspecified vulnerability in Oracle MySQL 5.5.30 and earlier and 5.6.10 and earlier allows remote authenticated users to affect availability via unknown vectors related to Stored Procedure.
- 53372
- 53372
- GLSA-201308-06
- GLSA-201308-06
- MDVSA-2013:150
- MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html
Modified: 2024-11-21
CVE-2013-2391
Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier allows local users to affect confidentiality and integrity via unknown vectors related to Server Install.
Modified: 2024-11-21
CVE-2013-2392
Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer.
Modified: 2024-11-21
CVE-2013-3783
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Parser.
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- 95332
- 95332
- 54300
- 54300
- DSA-2818
- DSA-2818
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- 61210
- 61210
- USN-1909-1
- USN-1909-1
- oracle-cpujuly2013-cve20133783(85719)
- oracle-cpujuly2013-cve20133783(85719)
Modified: 2024-11-21
CVE-2013-3793
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier and 5.6.11 and earlier allows remote authenticated users to affect availability via unknown vectors related to Data Manipulation Language.
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- 95323
- 95323
- 54300
- 54300
- DSA-2818
- DSA-2818
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- 61264
- 61264
- USN-1909-1
- USN-1909-1
- oracle-cpujuly2013-cve20133793(85710)
- oracle-cpujuly2013-cve20133793(85710)
Modified: 2024-11-21
CVE-2013-3794
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.30 and earlier and 5.6.10 allows remote authenticated users to affect availability via unknown vectors related to Server Partition.
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- 95333
- 95333
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- 61222
- 61222
Modified: 2024-11-21
CVE-2013-3801
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.30 and earlier and 5.6.10 allows remote authenticated users to affect availability via unknown vectors related to Server Options.
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- 95331
- 95331
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- 61269
- 61269
Modified: 2024-11-21
CVE-2013-3802
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote authenticated users to affect availability via unknown vectors related to Full Text Search.
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- 95325
- 95325
- 53372
- 53372
- 54300
- 54300
- GLSA-201308-06
- GLSA-201308-06
- DSA-2818
- DSA-2818
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- 61244
- 61244
- USN-1909-1
- USN-1909-1
- oracle-cpujuly2013-cve20133802(85712)
- oracle-cpujuly2013-cve20133802(85712)
Modified: 2024-11-21
CVE-2013-3804
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer.
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- 95328
- 95328
- 53372
- 53372
- 54300
- 54300
- GLSA-201308-06
- GLSA-201308-06
- DSA-2818
- DSA-2818
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- USN-1909-1
- USN-1909-1
- oracle-cpujuly2013-cve20133804(85715)
- oracle-cpujuly2013-cve20133804(85715)
Modified: 2024-11-21
CVE-2013-3805
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.30 and earlier and 5.6.10 allows remote authenticated users to affect availability via unknown vectors related to Prepared Statements.
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- 95327
- 95327
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
Modified: 2024-11-21
CVE-2013-3808
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 allows remote authenticated users to affect availability via unknown vectors related to Server Options.
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- 95330
- 95330
- 53372
- 53372
- GLSA-201308-06
- GLSA-201308-06
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- oracle-cpujuly2013-cve20133808(85717)
- oracle-cpujuly2013-cve20133808(85717)
Modified: 2024-11-21
CVE-2013-3809
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier and 5.6.11 and earlier allows remote authenticated users to affect integrity via unknown vectors related to Audit Log.
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- 95322
- 95322
- 54300
- 54300
- DSA-2818
- DSA-2818
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- USN-1909-1
- USN-1909-1
- oracle-cpujuly2013-cve20133809(85709)
- oracle-cpujuly2013-cve20133809(85709)
Modified: 2024-11-21
CVE-2013-3812
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier and 5.6.11 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Replication.
- SUSE-SU-2013:1390
- SUSE-SU-2013:1390
- SUSE-SU-2013:1529
- SUSE-SU-2013:1529
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1335
- openSUSE-SU-2013:1410
- openSUSE-SU-2013:1410
- 95336
- 95336
- 54300
- 54300
- DSA-2818
- DSA-2818
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
- USN-1909-1
- USN-1909-1
- oracle-cpujuly2013-cve20133812(85723)
- oracle-cpujuly2013-cve20133812(85723)
Modified: 2024-11-21
CVE-2013-3839
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.70 and earlier, 5.5.32 and earlier, and 5.6.12 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 55291
- 55291
- GLSA-201409-04
- GLSA-201409-04
- DSA-2780
- DSA-2780
- DSA-2818
- DSA-2818
- MDVSA-2013:250
- MDVSA-2013:250
- http://www.oracle.com/technetwork/topics/security/cpuoct2013-1899837.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2013-1899837.html
- 63109
- 63109
- 1029184
- 1029184
- USN-2006-1
- USN-2006-1
Modified: 2024-11-21
CVE-2013-5807
Unspecified vulnerability in Oracle MySQL Server 5.5.x through 5.5.32 and 5.6.x through 5.6.12 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Replication.
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- GLSA-201409-04
- GLSA-201409-04
- DSA-2818
- DSA-2818
- http://www.oracle.com/technetwork/topics/security/cpuoct2013-1899837.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2013-1899837.html
- 63105
- 63105
- 1029184
- 1029184
- USN-2006-1
- USN-2006-1
Modified: 2024-11-21
CVE-2013-5891
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.33 and earlier and 5.6.13 and earlier allows remote authenticated users to affect availability via unknown vectors related to Partition.
- 102070
- 102070
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64891
- 64891
Modified: 2024-11-21
CVE-2013-5908
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote attackers to affect availability via unknown vectors related to Error Handling.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- 102078
- 102078
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64896
- 64896
- oracle-cpujan2014-cve20135908(90389)
- oracle-cpujan2014-cve20135908(90389)
Modified: 2024-11-21
CVE-2014-0001
Buffer overflow in client/mysql.cc in Oracle MySQL and MariaDB before 5.5.35 allows remote database servers to cause a denial of service (crash) and possibly execute arbitrary code via a long server version string.
- http://bazaar.launchpad.net/~maria-captains/maria/5.5/revision/2502.565.64
- http://bazaar.launchpad.net/~maria-captains/maria/5.5/revision/2502.565.64
- 102713
- 102713
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 52161
- 52161
- GLSA-201409-04
- GLSA-201409-04
- MDVSA-2014:029
- MDVSA-2014:029
- 102714
- 102714
- 65298
- 65298
- 1029708
- 1029708
- https://bugzilla.redhat.com/show_bug.cgi?id=1054592
- https://bugzilla.redhat.com/show_bug.cgi?id=1054592
- mysql-cve20140001-bo(90901)
- mysql-cve20140001-bo(90901)
- https://mariadb.com/kb/en/mariadb-5535-changelog/
- https://mariadb.com/kb/en/mariadb-5535-changelog/
Modified: 2024-11-21
CVE-2014-0384
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to XML.
Modified: 2024-11-21
CVE-2014-0386
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.71 and earlier, 5.5.33 and earlier, and 5.6.13 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.
- 102069
- 102069
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64904
- 64904
- oracle-cpujan2014-cve20140386(90380)
- oracle-cpujan2014-cve20140386(90380)
Modified: 2024-11-21
CVE-2014-0393
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.71 and earlier, 5.5.33 and earlier, and 5.6.13 and earlier allows remote authenticated users to affect integrity via unknown vectors related to InnoDB.
- 102075
- 102075
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64877
- 64877
- oracle-cpujan2014-cve20140393(90386)
- oracle-cpujan2014-cve20140393(90386)
Modified: 2024-11-21
CVE-2014-0401
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors.
- 102071
- 102071
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64898
- 64898
- oracle-cpujan2014-cve20140401(90382)
- oracle-cpujan2014-cve20140401(90382)
Modified: 2024-11-21
CVE-2014-0402
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.71 and earlier, 5.5.33 and earlier, and 5.6.13 and earlier allows remote authenticated users to affect availability via unknown vectors related to Locking.
- 102068
- 102068
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64908
- 64908
- oracle-cpujan2014-cve20140402(90379)
- oracle-cpujan2014-cve20140402(90379)
Modified: 2024-11-21
CVE-2014-0412
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to InnoDB.
- 102067
- 102067
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64880
- 64880
- oracle-cpujan2014-cve20140412(90378)
- oracle-cpujan2014-cve20140412(90378)
Modified: 2024-11-21
CVE-2014-0420
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.34 and earlier, and 5.6.14 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Replication.
- 102077
- 102077
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64888
- 64888
- oracle-cpujan2014-cve20140420(90388)
- oracle-cpujan2014-cve20140420(90388)
Modified: 2024-11-21
CVE-2014-0437
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.
- 102074
- 102074
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64849
- 64849
- oracle-cpujan2014-cve20140437(90385)
- oracle-cpujan2014-cve20140437(90385)
Modified: 2024-11-21
CVE-2014-2419
Unspecified vulnerability in Oracle MySQL Server 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Partition.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66880
- 66880
Modified: 2024-11-21
CVE-2014-2430
Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote authenticated users to affect availability via unknown vectors related to Performance Schema.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66858
- 66858
Modified: 2024-11-21
CVE-2014-2431
Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote attackers to affect availability via unknown vectors related to Options.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66890
- 66890
Modified: 2024-11-21
CVE-2014-2432
Unspecified vulnerability Oracle the MySQL Server component 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Federated.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66875
- 66875
Modified: 2024-11-21
CVE-2014-2436
Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to RBR.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66896
- 66896
Modified: 2024-11-21
CVE-2014-2438
Unspecified vulnerability in Oracle MySQL Server 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Replication.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66846
- 66846
Modified: 2024-11-21
CVE-2014-2440
Unspecified vulnerability in the MySQL Client component in Oracle MySQL 5.5.36 and earlier and 5.6.16 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66850
- 66850
Modified: 2024-11-21
CVE-2014-2494
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to ENARC.
- SUSE-SU-2014:1072
- SUSE-SU-2014:1072
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 60425
- 60425
- DSA-2985
- DSA-2985
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 1030578
- 1030578
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
Modified: 2024-11-21
CVE-2014-4207
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to SROPTZR.
- SUSE-SU-2014:1072
- SUSE-SU-2014:1072
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 60425
- 60425
- DSA-2985
- DSA-2985
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 68593
- 68593
- 1030578
- 1030578
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- oracle-cpujul2014-cve20144207(94624)
- oracle-cpujul2014-cve20144207(94624)
Modified: 2024-11-21
CVE-2014-4243
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to ENFED.
- SUSE-SU-2014:1072
- SUSE-SU-2014:1072
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 60425
- 60425
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 68611
- 68611
- 1030578
- 1030578
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- oracle-cpujul2014-cve20144243(94628)
- oracle-cpujul2014-cve20144243(94628)
Modified: 2024-11-21
CVE-2014-4258
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier and 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SRINFOSC.
- SUSE-SU-2014:1072
- SUSE-SU-2014:1072
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 60425
- 60425
- DSA-2985
- DSA-2985
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 68564
- 68564
- 1030578
- 1030578
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- oracle-cpujul2014-cve20144258(94620)
- oracle-cpujul2014-cve20144258(94620)
Modified: 2024-11-21
CVE-2014-4260
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier, and 5.6.17 and earlier, allows remote authenticated users to affect integrity and availability via vectors related to SRCHAR.
- SUSE-SU-2014:1072
- SUSE-SU-2014:1072
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 60425
- 60425
- DSA-2985
- DSA-2985
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 68573
- 68573
- 1030578
- 1030578
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- oracle-cpujul2014-cve20144260(94621)
- oracle-cpujul2014-cve20144260(94621)
Modified: 2024-11-21
CVE-2014-4274
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows local users to affect confidentiality, integrity, and availability via vectors related to SERVER:MyISAM.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 69732
- 69732
Modified: 2024-11-21
CVE-2014-4287
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:CHARACTER SETS.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70517
- 70517
Modified: 2024-11-21
CVE-2014-6463
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:REPLICATION ROW FORMAT BINARY LOG DML.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70532
- 70532
Modified: 2024-11-21
CVE-2014-6464
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:INNODB DML FOREIGN KEYS.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70451
- 70451
Modified: 2024-11-21
CVE-2014-6469
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:OPTIMIZER.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70446
- 70446
Modified: 2024-11-21
CVE-2014-6478
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote attackers to affect integrity via vectors related to SERVER:SSL:yaSSL.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70489
- 70489
Modified: 2024-11-21
CVE-2014-6484
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to SERVER:DML.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70455
- 70455
Modified: 2024-11-21
CVE-2014-6491
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to SERVER:SSL:yaSSL, a different vulnerability than CVE-2014-6500.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70444
- 70444
Modified: 2024-11-21
CVE-2014-6494
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulnerability than CVE-2014-6496.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70497
- 70497
Modified: 2024-11-21
CVE-2014-6495
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote attackers to affect availability via vectors related to SERVER:SSL:yaSSL.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70496
- 70496
Modified: 2024-11-21
CVE-2014-6496
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulnerability than CVE-2014-6494.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70469
- 70469
Modified: 2024-11-21
CVE-2014-6500
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to SERVER:SSL:yaSSL, a different vulnerability than CVE-2014-6491.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70478
- 70478
Modified: 2024-11-21
CVE-2014-6505
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to SERVER:MEMORY STORAGE ENGINE.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70516
- 70516
Modified: 2024-11-21
CVE-2014-6507
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SERVER:DML.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70550
- 70550
Modified: 2024-11-21
CVE-2014-6520
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:DDL.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70510
- 70510
Modified: 2024-11-21
CVE-2014-6530
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to CLIENT:MYSQLDUMP.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70486
- 70486
Modified: 2024-11-21
CVE-2014-6551
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows local users to affect confidentiality via vectors related to CLIENT:MYSQLADMIN.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70462
- 70462
Modified: 2024-11-21
CVE-2014-6555
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SERVER:DML.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70530
- 70530
Modified: 2024-11-21
CVE-2014-6559
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect confidentiality via vectors related to C API SSL CERTIFICATE HANDLING.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70487
- 70487
Modified: 2024-11-21
CVE-2014-6568
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier, and 5.6.21 and earlier, allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DML.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72210
- 72210
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0374
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Security : Privileges : Foreign Key.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72227
- 72227
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- oracle-cpujan2015-cve20150374(100191)
- oracle-cpujan2015-cve20150374(100191)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0381
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote attackers to affect availability via unknown vectors related to Server : Replication, a different vulnerability than CVE-2015-0382.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72214
- 72214
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- oracle-cpujan2015-cve20150381(100185)
- oracle-cpujan2015-cve20150381(100185)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0382
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote attackers to affect availability via unknown vectors related to Server : Replication, a different vulnerability than CVE-2015-0381.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72200
- 72200
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- oracle-cpujan2015-cve20150382(100184)
- oracle-cpujan2015-cve20150382(100184)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0391
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72205
- 72205
- 1031581
- 1031581
- oracle-cpujan2015-cve20150391(100186)
- oracle-cpujan2015-cve20150391(100186)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0411
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier, and 5.6.21 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Server : Security : Encryption.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72191
- 72191
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- oracle-cpujan2015-cve20150411(100183)
- oracle-cpujan2015-cve20150411(100183)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0432
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DDL : Foreign Key.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72217
- 72217
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- oracle-cpujan2015-cve20150432(100187)
- oracle-cpujan2015-cve20150432(100187)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0433
Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote authenticated users to affect availability via vectors related to InnoDB : DML.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-0441
Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Security : Encryption.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-0499
Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, and 5.6.23 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Federated.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- MDVSA-2015:227
- MDVSA-2015:227
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-0501
Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, and 5.6.23 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Compiling.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- MDVSA-2015:227
- MDVSA-2015:227
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-0505
Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, and 5.6.23 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- MDVSA-2015:227
- MDVSA-2015:227
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 74112
- 74112
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-2568
Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote attackers to affect availability via unknown vectors related to Server : Security : Privileges.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 74073
- 74073
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-2571
Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, and 5.6.23 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Optimizer.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- MDVSA-2015:227
- MDVSA-2015:227
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 74095
- 74095
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-2573
Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 74078
- 74078
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-4757
Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier and 5.6.23 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Optimizer.
- openSUSE-SU-2015:1629
- openSUSE-SU-2015:1629
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1630
- RHSA-2015:1630
- RHSA-2015:1646
- RHSA-2015:1646
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- 75759
- 75759
- 1032911
- 1032911
- USN-2674-1
- USN-2674-1
- GLSA-201610-06
- GLSA-201610-06
Modified: 2024-11-21
CVE-2016-0502
Unspecified vulnerability in Oracle MySQL 5.5.31 and earlier and 5.6.11 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.
Closed bugs
Обновить до => 3.0.0
Closed vulnerabilities
BDU:2015-10550
Уязвимость браузера Firefox, позволяющая нарушителю выполнить произвольный код
BDU:2015-10551
Уязвимость браузера Firefox ESR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10552
Уязвимость браузера Firefox, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2015-10553
Уязвимость браузера Firefox ESR, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2015-10554
Уязвимость почтового клиента Thunderbird, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2015-10555
Уязвимость браузера Firefox, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2015-10556
Уязвимость браузера Firefox ESR, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2015-10557
Уязвимость почтового клиента Thunderbird, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2015-10558
Уязвимость браузера Firefox, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2015-10559
Уязвимость браузера Firefox, позволяющая нарушителю выполнить произвольный код на стороне клиента
BDU:2015-10560
Уязвимость браузера Firefox ESR, позволяющая нарушителю выполнить произвольный код на стороне клиента
BDU:2015-10561
Уязвимость почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код на стороне клиента
BDU:2015-10562
Уязвимость браузера Firefox, позволяющая нарушителю выполнить произвольный код
BDU:2015-10563
Уязвимость браузера Firefox ESR, позволяющая нарушителю выполнить произвольный код
BDU:2015-10564
Уязвимость браузера Firefox, позволяющая нарушителю читать данные из неинициализированных областей памяти
BDU:2015-10565
Уязвимость браузера Firefox ESR, позволяющая нарушителю читать данные из неинициализированных областей памяти
BDU:2015-10566
Уязвимость почтового клиента Thunderbird, позволяющая нарушителю читать данные из неинициализированных областей памяти
BDU:2015-10567
Уязвимость браузера Firefox, позволяющая нарушителю читать данные из неинициализированных областей памяти
BDU:2015-10568
Уязвимость браузера Firefox ESR, позволяющая нарушителю читать данные из неинициализированных областей памяти
BDU:2015-10569
Уязвимость почтового клиента Thunderbird, позволяющая нарушителю читать данные из неинициализированных областей памяти
BDU:2015-10570
Уязвимость браузера Firefox, позволяющая нарушителю читать данные из неинициализированных областей памяти
BDU:2015-10571
Уязвимость браузера Firefox ESR, позволяющая нарушителю читать данные из неинициализированных областей памяти
BDU:2015-10572
Уязвимость почтового клиента Thunderbird, позволяющая нарушителю читать данные из неинициализированных областей памяти
BDU:2015-10573
Уязвимость браузера Firefox, позволяющая нарушителю получить доступ к содержимому ячеек памяти
BDU:2015-10574
Уязвимость браузера Firefox ESR, позволяющая нарушителю получить доступ к содержимому ячеек памяти
BDU:2015-10575
Уязвимость почтового клиента Thunderbird, позволяющая нарушителю получить доступ к содержимому ячеек памяти
BDU:2015-10576
Уязвимость браузера Firefox, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2015-10577
Уязвимость браузера Firefox ESR, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2015-10578
Уязвимость почтового клиента Thunderbird, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2015-10810
Уязвимость браузера Firefox, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании
BDU:2015-10811
Уязвимость браузера Firefox ESR, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании
BDU:2015-10812
Уязвимость браузера Firefox, позволяющая нарушителю повлиять на работу программы
BDU:2015-10813
Уязвимость браузера Firefox ESR, позволяющая нарушителю повлиять на работу программы
BDU:2015-10814
Уязвимость почтового клиента Thunderbird, позволяющая нарушителю повлиять на работу программы
BDU:2015-10815
Уязвимость браузера Firefox, позволяющая нарушителю повлиять на работу программы
BDU:2015-10816
Уязвимость браузера Firefox ESR, позволяющая нарушителю повлиять на работу программы
BDU:2015-10817
Уязвимость почтового клиента Thunderbird, позволяющая нарушителю повлиять на работу программы
BDU:2015-10818
Уязвимость браузера Firefox, позволяющая нарушителю выполнить произвольный код
BDU:2015-10819
Уязвимость браузера Firefox ESR, позволяющая нарушителю выполнить произвольный код
Modified: 2024-11-21
CVE-2015-2722
Use-after-free vulnerability in the CanonicalizeXPCOMParticipant function in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 allows remote attackers to execute arbitrary code via vectors involving attachment of an XMLHttpRequest object to a shared worker.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- http://www.mozilla.org/security/announce/2015/mfsa2015-65.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-65.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- https://bugzilla.mozilla.org/show_bug.cgi?id=1166924
- https://bugzilla.mozilla.org/show_bug.cgi?id=1166924
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2724
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- DSA-3300
- DSA-3300
- DSA-3324
- DSA-3324
- http://www.mozilla.org/security/announce/2015/mfsa2015-59.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-59.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- USN-2673-1
- USN-2673-1
- https://bugzilla.mozilla.org/show_bug.cgi?id=1143679
- https://bugzilla.mozilla.org/show_bug.cgi?id=1143679
- https://bugzilla.mozilla.org/show_bug.cgi?id=1154876
- https://bugzilla.mozilla.org/show_bug.cgi?id=1154876
- https://bugzilla.mozilla.org/show_bug.cgi?id=1160884
- https://bugzilla.mozilla.org/show_bug.cgi?id=1160884
- https://bugzilla.mozilla.org/show_bug.cgi?id=1164567
- https://bugzilla.mozilla.org/show_bug.cgi?id=1164567
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2725
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0, Firefox ESR 38.x before 38.1, and Thunderbird before 38.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- http://www.mozilla.org/security/announce/2015/mfsa2015-59.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-59.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- https://bugzilla.mozilla.org/show_bug.cgi?id=1056410
- https://bugzilla.mozilla.org/show_bug.cgi?id=1056410
- https://bugzilla.mozilla.org/show_bug.cgi?id=1151650
- https://bugzilla.mozilla.org/show_bug.cgi?id=1151650
- https://bugzilla.mozilla.org/show_bug.cgi?id=1156861
- https://bugzilla.mozilla.org/show_bug.cgi?id=1156861
- https://bugzilla.mozilla.org/show_bug.cgi?id=1159321
- https://bugzilla.mozilla.org/show_bug.cgi?id=1159321
- https://bugzilla.mozilla.org/show_bug.cgi?id=1159973
- https://bugzilla.mozilla.org/show_bug.cgi?id=1159973
- https://bugzilla.mozilla.org/show_bug.cgi?id=1163359
- https://bugzilla.mozilla.org/show_bug.cgi?id=1163359
- https://bugzilla.mozilla.org/show_bug.cgi?id=1163852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1163852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1172076
- https://bugzilla.mozilla.org/show_bug.cgi?id=1172076
- https://bugzilla.mozilla.org/show_bug.cgi?id=1172397
- https://bugzilla.mozilla.org/show_bug.cgi?id=1172397
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2726
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- http://www.mozilla.org/security/announce/2015/mfsa2015-59.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-59.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- https://bugzilla.mozilla.org/show_bug.cgi?id=1059081
- https://bugzilla.mozilla.org/show_bug.cgi?id=1059081
- https://bugzilla.mozilla.org/show_bug.cgi?id=1132265
- https://bugzilla.mozilla.org/show_bug.cgi?id=1132265
- https://bugzilla.mozilla.org/show_bug.cgi?id=1145781
- https://bugzilla.mozilla.org/show_bug.cgi?id=1145781
- https://bugzilla.mozilla.org/show_bug.cgi?id=1146416
- https://bugzilla.mozilla.org/show_bug.cgi?id=1146416
- https://bugzilla.mozilla.org/show_bug.cgi?id=1155985
- https://bugzilla.mozilla.org/show_bug.cgi?id=1155985
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2728
The IndexedDatabaseManager class in the IndexedDB implementation in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 misinterprets an unspecified IDBDatabase field as a pointer, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors, related to a "type confusion" issue.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- DSA-3300
- DSA-3300
- http://www.mozilla.org/security/announce/2015/mfsa2015-61.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-61.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- https://bugzilla.mozilla.org/show_bug.cgi?id=1142210
- https://bugzilla.mozilla.org/show_bug.cgi?id=1142210
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2729
The AudioParamTimeline::AudioNodeInputValue function in the Web Audio implementation in Mozilla Firefox before 39.0 and Firefox ESR 38.x before 38.1 does not properly calculate an oscillator rendering range, which allows remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via unspecified vectors.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- RHSA-2015:1207
- RHSA-2015:1207
- http://www.mozilla.org/security/announce/2015/mfsa2015-62.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-62.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- https://bugzilla.mozilla.org/show_bug.cgi?id=1122218
- https://bugzilla.mozilla.org/show_bug.cgi?id=1122218
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2731
Use-after-free vulnerability in the CSPService::ShouldLoad function in the microtask implementation in Mozilla Firefox before 39.0, Firefox ESR 38.x before 38.1, and Thunderbird before 38.1 allows remote attackers to execute arbitrary code by leveraging client-side JavaScript that triggers removal of a DOM object on the basis of a Content Policy.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- DSA-3300
- DSA-3300
- http://www.mozilla.org/security/announce/2015/mfsa2015-63.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-63.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- https://bugzilla.mozilla.org/show_bug.cgi?id=1149891
- https://bugzilla.mozilla.org/show_bug.cgi?id=1149891
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2733
Use-after-free vulnerability in the CanonicalizeXPCOMParticipant function in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 allows remote attackers to execute arbitrary code via vectors involving attachment of an XMLHttpRequest object to a dedicated worker.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- http://www.mozilla.org/security/announce/2015/mfsa2015-65.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-65.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- https://bugzilla.mozilla.org/show_bug.cgi?id=1169867
- https://bugzilla.mozilla.org/show_bug.cgi?id=1169867
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2734
The CairoTextureClientD3D9::BorrowDrawTarget function in the Direct3D 9 implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 reads data from uninitialized memory locations, which has unspecified impact and attack vectors.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- DSA-3300
- DSA-3300
- DSA-3324
- DSA-3324
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- USN-2673-1
- USN-2673-1
- https://bugzilla.mozilla.org/show_bug.cgi?id=1166082
- https://bugzilla.mozilla.org/show_bug.cgi?id=1166082
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2735
nsZipArchive.cpp in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which allows remote attackers to have an unspecified impact via a crafted ZIP archive.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- DSA-3300
- DSA-3300
- DSA-3324
- DSA-3324
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- USN-2673-1
- USN-2673-1
- https://bugzilla.mozilla.org/show_bug.cgi?id=1166900
- https://bugzilla.mozilla.org/show_bug.cgi?id=1166900
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2736
The nsZipArchive::BuildFileList function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which allows remote attackers to have an unspecified impact via a crafted ZIP archive.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- DSA-3300
- DSA-3300
- DSA-3324
- DSA-3324
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- USN-2673-1
- USN-2673-1
- https://bugzilla.mozilla.org/show_bug.cgi?id=1167888
- https://bugzilla.mozilla.org/show_bug.cgi?id=1167888
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2737
The rx::d3d11::SetBufferData function in the Direct3D 11 implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 reads data from uninitialized memory locations, which has unspecified impact and attack vectors.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- DSA-3300
- DSA-3300
- DSA-3324
- DSA-3324
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- USN-2673-1
- USN-2673-1
- https://bugzilla.mozilla.org/show_bug.cgi?id=1167332
- https://bugzilla.mozilla.org/show_bug.cgi?id=1167332
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2738
The YCbCrImageDataDeserializer::ToDataSourceSurface function in the YCbCr implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 reads data from uninitialized memory locations, which has unspecified impact and attack vectors.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- DSA-3300
- DSA-3300
- DSA-3324
- DSA-3324
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- USN-2673-1
- USN-2673-1
- https://bugzilla.mozilla.org/show_bug.cgi?id=1167356
- https://bugzilla.mozilla.org/show_bug.cgi?id=1167356
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2739
The ArrayBufferBuilder::append function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which has unspecified impact and attack vectors.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- DSA-3300
- DSA-3300
- DSA-3324
- DSA-3324
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- USN-2673-1
- USN-2673-1
- https://bugzilla.mozilla.org/show_bug.cgi?id=1168207
- https://bugzilla.mozilla.org/show_bug.cgi?id=1168207
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2740
Buffer overflow in the nsXMLHttpRequest::AppendToResponseText function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 might allow remote attackers to cause a denial of service or have unspecified other impact via unknown vectors.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- DSA-3300
- DSA-3300
- DSA-3324
- DSA-3324
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-66.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- USN-2673-1
- USN-2673-1
- https://bugzilla.mozilla.org/show_bug.cgi?id=1170809
- https://bugzilla.mozilla.org/show_bug.cgi?id=1170809
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2741
Mozilla Firefox before 39.0, Firefox ESR 38.x before 38.1, and Thunderbird before 38.1 do not enforce key pinning upon encountering an X.509 certificate problem that generates a user dialog, which allows user-assisted man-in-the-middle attackers to bypass intended access restrictions by triggering a (1) expired certificate or (2) mismatched hostname for a domain with pinning enabled.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- RHSA-2015:1207
- RHSA-2015:1207
- RHSA-2015:1455
- RHSA-2015:1455
- http://www.mozilla.org/security/announce/2015/mfsa2015-67.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-67.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- 1032784
- 1032784
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- https://bugzilla.mozilla.org/show_bug.cgi?id=1147497
- https://bugzilla.mozilla.org/show_bug.cgi?id=1147497
- GLSA-201512-10
- GLSA-201512-10
Modified: 2024-11-21
CVE-2015-2743
PDF.js in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 enables excessive privileges for internal Workers, which might allow remote attackers to execute arbitrary code by leveraging a Same Origin Policy bypass.
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1229
- openSUSE-SU-2015:1266
- openSUSE-SU-2015:1266
- SUSE-SU-2015:1268
- SUSE-SU-2015:1268
- SUSE-SU-2015:1269
- SUSE-SU-2015:1269
- SUSE-SU-2015:1449
- SUSE-SU-2015:1449
- RHSA-2015:1207
- RHSA-2015:1207
- DSA-3300
- DSA-3300
- http://www.mozilla.org/security/announce/2015/mfsa2015-69.html
- http://www.mozilla.org/security/announce/2015/mfsa2015-69.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 75541
- 75541
- 1032783
- 1032783
- USN-2656-1
- USN-2656-1
- USN-2656-2
- USN-2656-2
- https://bugzilla.mozilla.org/show_bug.cgi?id=1163109
- https://bugzilla.mozilla.org/show_bug.cgi?id=1163109
- GLSA-201512-10
- GLSA-201512-10
Package firefox-esr updated to version 38.2.0-alt0.M70P.1 for branch t7 in task 147973.
Closed vulnerabilities
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
Closed bugs
обновите пакетик
Package subversion updated to version 1.8.13-alt0.M70P.1 for branch t7 in task 147973.
Closed vulnerabilities
BDU:2015-00404
Уязвимость программного обеспечения Apache Subversion, позволяющая удаленному злоумышленнику нарушить конфиденциальность и целостность защищаемой информации
BDU:2015-00405
Уязвимость программного обеспечения Apache Subversion, позволяющая удаленному злоумышленнику нарушить конфиденциальность и целостность защищаемой информации
BDU:2020-04532
Уязвимость серверного процессов mod_dav_svn и svnserve централизованной системы управления версиями Subversion, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2013-1845
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (memory consumption) by (1) setting or (2) deleting a large number of properties for a file or directory.
- openSUSE-SU-2013:0687
- openSUSE-SU-2013:0687
- openSUSE-SU-2013:0932
- openSUSE-SU-2013:0932
- [subversion-announce] 20130404 Apache Subversion 1.7.9 released
- [subversion-announce] 20130404 Apache Subversion 1.7.9 released
- [subversion-announce] 20130404 Subversion 1.6.21 released
- [subversion-announce] 20130404 Subversion 1.6.21 released
- RHSA-2013:0737
- RHSA-2013:0737
- http://subversion.apache.org/security/CVE-2013-1845-advisory.txt
- http://subversion.apache.org/security/CVE-2013-1845-advisory.txt
- MDVSA-2013:153
- MDVSA-2013:153
- USN-1893-1
- USN-1893-1
- https://bugzilla.redhat.com/show_bug.cgi?id=929082
- https://bugzilla.redhat.com/show_bug.cgi?id=929082
- oval:org.mitre.oval:def:18973
- oval:org.mitre.oval:def:18973
Modified: 2024-11-21
CVE-2013-1847
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.0 through 1.6.20 and 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an anonymous LOCK for a URL that does not exist.
- openSUSE-SU-2013:0687
- openSUSE-SU-2013:0687
- openSUSE-SU-2013:0932
- openSUSE-SU-2013:0932
- [subversion-announce] 20130404 Apache Subversion 1.7.9 released
- [subversion-announce] 20130404 Apache Subversion 1.7.9 released
- [subversion-announce] 20130404 Subversion 1.6.21 released
- [subversion-announce] 20130404 Subversion 1.6.21 released
- RHSA-2013:0737
- RHSA-2013:0737
- http://subversion.apache.org/security/CVE-2013-1847-advisory.txt
- http://subversion.apache.org/security/CVE-2013-1847-advisory.txt
- MDVSA-2013:153
- MDVSA-2013:153
- USN-1893-1
- USN-1893-1
- https://bugzilla.redhat.com/show_bug.cgi?id=929090
- https://bugzilla.redhat.com/show_bug.cgi?id=929090
- oval:org.mitre.oval:def:18538
- oval:org.mitre.oval:def:18538
Modified: 2024-11-21
CVE-2013-1849
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x through 1.6.20 and 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a PROPFIND request for an activity URL.
- openSUSE-SU-2013:0687
- openSUSE-SU-2013:0687
- openSUSE-SU-2013:0932
- openSUSE-SU-2013:0932
- [subversion-announce] 20130404 Apache Subversion 1.7.9 released
- [subversion-announce] 20130404 Apache Subversion 1.7.9 released
- [subversion-announce] 20130404 Subversion 1.6.21 released
- [subversion-announce] 20130404 Subversion 1.6.21 released
- RHSA-2013:0737
- RHSA-2013:0737
- 20130305 Apache Subversion mod_dav_svn DoS via MKACTIVITY/PROPFIND
- 20130305 Apache Subversion mod_dav_svn DoS via MKACTIVITY/PROPFIND
- http://subversion.apache.org/security/CVE-2013-1849-advisory.txt
- http://subversion.apache.org/security/CVE-2013-1849-advisory.txt
- MDVSA-2013:153
- MDVSA-2013:153
- USN-1893-1
- USN-1893-1
- https://bugzilla.redhat.com/show_bug.cgi?id=929093
- https://bugzilla.redhat.com/show_bug.cgi?id=929093
- oval:org.mitre.oval:def:18980
- oval:org.mitre.oval:def:18980
Modified: 2024-11-21
CVE-2013-1968
Subversion before 1.6.23 and 1.7.x before 1.7.10 allows remote authenticated users to cause a denial of service (FSFS repository corruption) via a newline character in a file name.
- openSUSE-SU-2013:1139
- openSUSE-SU-2013:1139
- [subversion-announce] 20130531 Apache Subversion 1.7.10 released
- [subversion-announce] 20130531 Apache Subversion 1.7.10 released
- [subversion-announce] 20130531 Subversion 1.6.23 released
- [subversion-announce] 20130531 Subversion 1.6.23 released
- RHSA-2014:0255
- RHSA-2014:0255
- DSA-2703
- DSA-2703
- USN-1893-1
- USN-1893-1
- oval:org.mitre.oval:def:18986
- oval:org.mitre.oval:def:18986
- https://subversion.apache.org/security/CVE-2013-1968-advisory.txt
- https://subversion.apache.org/security/CVE-2013-1968-advisory.txt
Modified: 2024-11-21
CVE-2013-2112
The svnserve server in Subversion before 1.6.23 and 1.7.x before 1.7.10 allows remote attackers to cause a denial of service (exit) by aborting a connection.
- openSUSE-SU-2013:1139
- openSUSE-SU-2013:1139
- [subversion-announce] 20130531 Apache Subversion 1.7.10 released
- [subversion-announce] 20130531 Apache Subversion 1.7.10 released
- [subversion-announce] 20130531 Subversion 1.6.23 released
- [subversion-announce] 20130531 Subversion 1.6.23 released
- RHSA-2014:0255
- RHSA-2014:0255
- DSA-2703
- DSA-2703
- USN-1893-1
- USN-1893-1
- oval:org.mitre.oval:def:19057
- oval:org.mitre.oval:def:19057
- https://subversion.apache.org/security/CVE-2013-2112-advisory.txt
- https://subversion.apache.org/security/CVE-2013-2112-advisory.txt
Modified: 2024-11-21
CVE-2013-4131
The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 through 1.7.10 and 1.8.x before 1.8.1 allows remote authenticated users to cause a denial of service (assertion failure or out-of-bounds read) via a certain (1) COPY, (2) DELETE, or (3) MOVE request against a revision root.
- openSUSE-SU-2013:1286
- openSUSE-SU-2013:1286
- http://subversion.apache.org/security/CVE-2013-4131-advisory.txt
- http://subversion.apache.org/security/CVE-2013-4131-advisory.txt
- 61454
- 61454
- https://bugzilla.redhat.com/show_bug.cgi?id=986194
- https://bugzilla.redhat.com/show_bug.cgi?id=986194
- apache-subversion-cve20134131-dos(85983)
- apache-subversion-cve20134131-dos(85983)
- oval:org.mitre.oval:def:18621
- oval:org.mitre.oval:def:18621
Modified: 2024-11-21
CVE-2013-4277
Svnserve in Apache Subversion 1.4.0 through 1.7.12 and 1.8.0 through 1.8.1 allows local users to overwrite arbitrary files or kill arbitrary processes via a symlink attack on the file specified by the --pid-file option.
- openSUSE-SU-2013:1442
- openSUSE-SU-2013:1442
- openSUSE-SU-2013:1485
- openSUSE-SU-2013:1485
- http://subversion.apache.org/security/CVE-2013-4277-advisory.txt
- http://subversion.apache.org/security/CVE-2013-4277-advisory.txt
- 62266
- 62266
- apache-subversion-cve20134277-symlink(86972)
- apache-subversion-cve20134277-symlink(86972)
- oval:org.mitre.oval:def:18554
- oval:org.mitre.oval:def:18554
Modified: 2024-11-21
CVE-2014-0032
The get_resource function in repos.c in the mod_dav_svn module in Apache Subversion before 1.7.15 and 1.8.x before 1.8.6, when SVNListParentPath is enabled, allows remote attackers to cause a denial of service (crash) via vectors related to the server root and request methods other than GET, as demonstrated by the "svn ls http://svn.example.com" command.
- openSUSE-SU-2014:0307
- openSUSE-SU-2014:0307
- openSUSE-SU-2014:0334
- openSUSE-SU-2014:0334
- [subversion-dev] 20140110 2 Re: Segfault in mod_dav_svn with repositories on /
- [subversion-dev] 20140110 2 Re: Segfault in mod_dav_svn with repositories on /
- [subversion-dev] 20140110 Re: Segfault in mod_dav_svn with repositories on /
- [subversion-dev] 20140110 Re: Segfault in mod_dav_svn with repositories on /
- [subversion-dev] 20140110 Sin mod_dav_svn with repositories on /
- [subversion-dev] 20140110 Sin mod_dav_svn with repositories on /
- RHSA-2014:0255
- RHSA-2014:0255
- 56822
- 56822
- 60722
- 60722
- 61321
- 61321
- http://support.apple.com/kb/HT6444
- http://support.apple.com/kb/HT6444
- http://svn.apache.org/repos/asf/subversion/tags/1.7.15/CHANGES
- http://svn.apache.org/repos/asf/subversion/tags/1.7.15/CHANGES
- http://svn.apache.org/repos/asf/subversion/tags/1.8.6/CHANGES
- http://svn.apache.org/repos/asf/subversion/tags/1.8.6/CHANGES
- http://svn.apache.org/viewvc?view=revision&revision=1557320
- http://svn.apache.org/viewvc?view=revision&revision=1557320
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 102927
- 102927
- 65434
- 65434
- USN-2316-1
- USN-2316-1
- apache-subversion-cve20140032-dos(90986)
- apache-subversion-cve20140032-dos(90986)
- GLSA-201610-05
- GLSA-201610-05
Modified: 2024-11-21
CVE-2014-3504
The (1) serf_ssl_cert_issuer, (2) serf_ssl_cert_subject, and (3) serf_ssl_cert_certificate functions in Serf 0.2.0 through 1.3.x before 1.3.7 does not properly handle a NUL byte in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
- openSUSE-SU-2014:1059
- openSUSE-SU-2014:1059
- 59584
- 59584
- 60721
- 60721
- USN-2315-1
- USN-2315-1
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 69238
- 69238
- https://groups.google.com/forum/#%21topic/serf-dev/NvgPoK6sFsc
- https://groups.google.com/forum/#%21topic/serf-dev/NvgPoK6sFsc
- GLSA-201610-05
- GLSA-201610-05
- https://subversion.apache.org/security/CVE-2014-3522-advisory.txt
- https://subversion.apache.org/security/CVE-2014-3522-advisory.txt
Modified: 2024-11-21
CVE-2014-3522
The Serf RA layer in Apache Subversion 1.4.0 through 1.7.x before 1.7.18 and 1.8.x before 1.8.10 does not properly handle wildcards in the Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof servers via a crafted certificate.
- APPLE-SA-2015-03-09-4
- APPLE-SA-2015-03-09-4
- openSUSE-SU-2014:1059
- openSUSE-SU-2014:1059
- 59432
- 59432
- 59584
- 59584
- 60100
- 60100
- 60722
- 60722
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 109996
- 109996
- 69237
- 69237
- USN-2316-1
- USN-2316-1
- apache-subversion-cve20143528-info-disc(95090)
- apache-subversion-cve20143528-info-disc(95090)
- apache-subversion-cve20143522-spoofing(95311)
- apache-subversion-cve20143522-spoofing(95311)
- GLSA-201610-05
- GLSA-201610-05
- https://subversion.apache.org/security/CVE-2014-3522-advisory.txt
- https://subversion.apache.org/security/CVE-2014-3522-advisory.txt
- https://support.apple.com/HT204427
- https://support.apple.com/HT204427
Modified: 2024-11-21
CVE-2014-3528
Apache Subversion 1.0.0 through 1.7.x before 1.7.17 and 1.8.x before 1.8.10 uses an MD5 hash of the URL and authentication realm to store cached credentials, which makes it easier for remote servers to obtain the credentials via a crafted authentication realm.
- APPLE-SA-2015-03-09-4
- APPLE-SA-2015-03-09-4
- openSUSE-SU-2014:1059
- openSUSE-SU-2014:1059
- RHSA-2015:0165
- RHSA-2015:0165
- RHSA-2015:0166
- RHSA-2015:0166
- 59432
- 59432
- 59584
- 59584
- 60722
- 60722
- http://subversion.apache.org/security/CVE-2014-3528-advisory.txt
- http://subversion.apache.org/security/CVE-2014-3528-advisory.txt
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 68995
- 68995
- USN-2316-1
- USN-2316-1
- GLSA-201610-05
- GLSA-201610-05
- https://support.apple.com/HT204427
- https://support.apple.com/HT204427
Modified: 2024-11-21
CVE-2014-3580
The mod_dav_svn Apache HTTPD server module in Apache Subversion 1.x before 1.7.19 and 1.8.x before 1.8.11 allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) via a REPORT request for a resource that does not exist.
- APPLE-SA-2015-03-09-4
- APPLE-SA-2015-03-09-4
- RHSA-2015:0165
- RHSA-2015:0165
- RHSA-2015:0166
- RHSA-2015:0166
- 61131
- 61131
- http://subversion.apache.org/security/CVE-2014-3580-advisory.txt
- http://subversion.apache.org/security/CVE-2014-3580-advisory.txt
- DSA-3107
- DSA-3107
- 71726
- 71726
- USN-2721-1
- USN-2721-1
- https://support.apple.com/HT204427
- https://support.apple.com/HT204427
Modified: 2024-11-21
CVE-2014-8108
The mod_dav_svn Apache HTTPD server module in Apache Subversion 1.7.x before 1.7.19 and 1.8.x before 1.8.11 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a request for a URI that triggers a lookup for a virtual transaction name that does not exist.
- APPLE-SA-2015-03-09-4
- APPLE-SA-2015-03-09-4
- RHSA-2015:0166
- RHSA-2015:0166
- 61131
- 61131
- http://subversion.apache.org/security/CVE-2014-8108-advisory.txt
- http://subversion.apache.org/security/CVE-2014-8108-advisory.txt
- 71725
- 71725
- USN-2721-1
- USN-2721-1
- https://support.apple.com/HT204427
- https://support.apple.com/HT204427
Modified: 2024-11-21
CVE-2015-0248
The (1) mod_dav_svn and (2) svnserve servers in Subversion 1.6.0 through 1.7.19 and 1.8.0 through 1.8.11 allow remote attackers to cause a denial of service (assertion failure and abort) via crafted parameter combinations related to dynamically evaluated revision numbers.
- APPLE-SA-2015-09-16-2
- APPLE-SA-2015-09-16-2
- openSUSE-SU-2015:0672
- openSUSE-SU-2015:0672
- RHSA-2015:1633
- RHSA-2015:1633
- RHSA-2015:1742
- RHSA-2015:1742
- http://subversion.apache.org/security/CVE-2015-0248-advisory.txt
- http://subversion.apache.org/security/CVE-2015-0248-advisory.txt
- DSA-3231
- DSA-3231
- MDVSA-2015:192
- MDVSA-2015:192
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 74260
- 74260
- 1033214
- 1033214
- USN-2721-1
- USN-2721-1
- GLSA-201610-05
- GLSA-201610-05
- https://support.apple.com/HT205217
- https://support.apple.com/HT205217
Modified: 2024-11-21
CVE-2015-0251
The mod_dav_svn server in Subversion 1.5.0 through 1.7.19 and 1.8.0 through 1.8.11 allows remote authenticated users to spoof the svn:author property via a crafted v1 HTTP protocol request sequences.
- APPLE-SA-2015-09-16-2
- APPLE-SA-2015-09-16-2
- openSUSE-SU-2015:0672
- openSUSE-SU-2015:0672
- RHSA-2015:1633
- RHSA-2015:1633
- RHSA-2015:1742
- RHSA-2015:1742
- 20150611 Apache vulnerability program faulting module ntdll.dll
- 20150611 Apache vulnerability program faulting module ntdll.dll
- http://subversion.apache.org/security/CVE-2015-0251-advisory.txt
- http://subversion.apache.org/security/CVE-2015-0251-advisory.txt
- DSA-3231
- DSA-3231
- MDVSA-2015:192
- MDVSA-2015:192
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- 74259
- 74259
- 1033214
- 1033214
- USN-2721-1
- USN-2721-1
- GLSA-201610-05
- GLSA-201610-05
- https://support.apple.com/HT205217
- https://support.apple.com/HT205217
Closed bugs
FR: новая версия 1.8.*
Package supertuxkart updated to version 0.8.1-alt0.M70P.1 for branch t7 in task 147973.
Closed bugs
Бэкпорт supertuxkart 0.8.1 в p7
Package wine-vanilla updated to version 1.7.49-alt0.M70P.1 for branch t7 in task 147973.
Closed bugs
wine-vanilla-full не устанавливает wine-mono
Package kernel-image-un-def updated to version 4.1.6-alt1 for branch t7 in task 147974.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-3290
arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform improperly relies on espfix64 during nested NMI processing, which allows local users to gain privileges by triggering an NMI within a certain instruction window.
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=9b6e6a8334d56354853f9c255d1395c2ba570e0a
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=9b6e6a8334d56354853f9c255d1395c2ba570e0a
- openSUSE-SU-2015:1382
- openSUSE-SU-2015:1382
- DSA-3313
- DSA-3313
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.6
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.6
- [oss-security] 20150722 Linux x86_64 NMI security issues
- [oss-security] 20150722 Linux x86_64 NMI security issues
- [oss-security] 20150804 CVE-2015-3290: Linux privilege escalation due to nested NMIs interrupting espfix64
- [oss-security] 20150804 CVE-2015-3290: Linux privilege escalation due to nested NMIs interrupting espfix64
- 76004
- 76004
- USN-2687-1
- USN-2687-1
- USN-2688-1
- USN-2688-1
- USN-2689-1
- USN-2689-1
- USN-2690-1
- USN-2690-1
- USN-2691-1
- USN-2691-1
- https://bugzilla.redhat.com/show_bug.cgi?id=1243465
- https://bugzilla.redhat.com/show_bug.cgi?id=1243465
- https://github.com/torvalds/linux/commit/9b6e6a8334d56354853f9c255d1395c2ba570e0a
- https://github.com/torvalds/linux/commit/9b6e6a8334d56354853f9c255d1395c2ba570e0a
- 37722
- 37722
Modified: 2024-11-21
CVE-2015-3291
arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform does not properly determine when nested NMI processing is occurring, which allows local users to cause a denial of service (skipped NMI) by modifying the rsp register, issuing a syscall instruction, and triggering an NMI.
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=810bc075f78ff2c221536eb3008eac6a492dba2d
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=810bc075f78ff2c221536eb3008eac6a492dba2d
- DSA-3313
- DSA-3313
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.6
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.6
- [oss-security] 20150722 Linux x86_64 NMI security issues
- [oss-security] 20150722 Linux x86_64 NMI security issues
- 76003
- 76003
- USN-2687-1
- USN-2687-1
- USN-2688-1
- USN-2688-1
- USN-2689-1
- USN-2689-1
- USN-2690-1
- USN-2690-1
- USN-2691-1
- USN-2691-1
- https://bugzilla.redhat.com/show_bug.cgi?id=1243489
- https://bugzilla.redhat.com/show_bug.cgi?id=1243489
- https://github.com/torvalds/linux/commit/810bc075f78ff2c221536eb3008eac6a492dba2d
- https://github.com/torvalds/linux/commit/810bc075f78ff2c221536eb3008eac6a492dba2d
Modified: 2024-11-21
CVE-2015-5157
arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform mishandles IRET faults in processing NMIs that occurred during userspace execution, which might allow local users to gain privileges by triggering an NMI.
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=9b6e6a8334d56354853f9c255d1395c2ba570e0a
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=9b6e6a8334d56354853f9c255d1395c2ba570e0a
- SUSE-SU-2015:1727
- SUSE-SU-2015:1727
- SUSE-SU-2015:2108
- SUSE-SU-2015:2108
- SUSE-SU-2015:2339
- SUSE-SU-2015:2339
- SUSE-SU-2015:2350
- SUSE-SU-2015:2350
- SUSE-SU-2016:0354
- SUSE-SU-2016:0354
- RHSA-2016:0185
- RHSA-2016:0185
- RHSA-2016:0212
- RHSA-2016:0212
- RHSA-2016:0224
- RHSA-2016:0224
- RHSA-2016:0715
- RHSA-2016:0715
- DSA-3313
- DSA-3313
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.6
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.6
- [oss-security] 20150722 Linux x86_64 NMI security issues
- [oss-security] 20150722 Linux x86_64 NMI security issues
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html
- 76005
- 76005
- USN-2687-1
- USN-2687-1
- USN-2688-1
- USN-2688-1
- USN-2689-1
- USN-2689-1
- USN-2690-1
- USN-2690-1
- USN-2691-1
- USN-2691-1
- https://github.com/torvalds/linux/commit/9b6e6a8334d56354853f9c255d1395c2ba570e0a
- https://github.com/torvalds/linux/commit/9b6e6a8334d56354853f9c255d1395c2ba570e0a
Modified: 2024-11-21
CVE-2015-5697
The get_bitmap_file function in drivers/md/md.c in the Linux kernel before 4.1.6 does not initialize a certain bitmap data structure, which allows local users to obtain sensitive information from kernel memory via a GET_BITMAP_FILE ioctl call.
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=b6878d9e03043695dbf3fa1caa6dfc09db225b16
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=b6878d9e03043695dbf3fa1caa6dfc09db225b16
- FEDORA-2015-12908
- FEDORA-2015-12908
- FEDORA-2015-12917
- FEDORA-2015-12917
- FEDORA-2015-13396
- FEDORA-2015-13396
- FEDORA-2015-13391
- FEDORA-2015-13391
- SUSE-SU-2015:1727
- SUSE-SU-2015:1727
- DSA-3329
- DSA-3329
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.6
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.6
- [oss-security] 20150728 CVE request: Linux kernel - information leak in md driver
- [oss-security] 20150728 CVE request: Linux kernel - information leak in md driver
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html
- 76066
- 76066
- 1033211
- 1033211
- USN-2731-1
- USN-2731-1
- USN-2732-1
- USN-2732-1
- USN-2748-1
- USN-2748-1
- USN-2749-1
- USN-2749-1
- USN-2751-1
- USN-2751-1
- USN-2752-1
- USN-2752-1
- USN-2777-1
- USN-2777-1
- https://bugzilla.redhat.com/show_bug.cgi?id=1249011
- https://bugzilla.redhat.com/show_bug.cgi?id=1249011
- https://github.com/torvalds/linux/commit/b6878d9e03043695dbf3fa1caa6dfc09db225b16
- https://github.com/torvalds/linux/commit/b6878d9e03043695dbf3fa1caa6dfc09db225b16