ALT-BU-2015-2645-1
Branch c7 update bulletin.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2014-8964
Heap-based buffer overflow in PCRE 8.36 and earlier allows remote attackers to cause a denial of service (crash) or have other unspecified impact via a crafted regular expression, related to an assertion that allows zero repeats.
- http://advisories.mageia.org/MGASA-2014-0534.html
- http://advisories.mageia.org/MGASA-2014-0534.html
- http://bugs.exim.org/show_bug.cgi?id=1546
- http://bugs.exim.org/show_bug.cgi?id=1546
- FEDORA-2014-15573
- FEDORA-2014-15573
- FEDORA-2014-17624
- FEDORA-2014-17624
- FEDORA-2014-17642
- FEDORA-2014-17642
- FEDORA-2014-17626
- FEDORA-2014-17626
- openSUSE-SU-2015:0858
- openSUSE-SU-2015:0858
- RHSA-2015:0330
- RHSA-2015:0330
- http://www.exim.org/viewvc/pcre?view=revision&revision=1513
- http://www.exim.org/viewvc/pcre?view=revision&revision=1513
- MDVSA-2015:002
- MDVSA-2015:002
- MDVSA-2015:137
- MDVSA-2015:137
- [oss-security] 20141121 Re: CVE request: heap buffer overflow in PCRE
- [oss-security] 20141121 Re: CVE request: heap buffer overflow in PCRE
- http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html
- http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html
- 71206
- 71206
- https://bugzilla.redhat.com/show_bug.cgi?id=1166147
- https://bugzilla.redhat.com/show_bug.cgi?id=1166147
- GLSA-201607-02
- GLSA-201607-02
Modified: 2024-11-21
CVE-2015-2325
The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a group containing a forward reference repeated a large number of times within a repeated outer group that has a zero minimum quantifier.
- http://lists.opensuse.org/opensuse-updates/2015-05/msg00014.html
- http://lists.opensuse.org/opensuse-updates/2015-05/msg00014.html
- https://bugs.exim.org/show_bug.cgi?id=1591
- https://bugs.exim.org/show_bug.cgi?id=1591
- https://fortiguard.com/zeroday/FG-VD-15-015
- https://fortiguard.com/zeroday/FG-VD-15-015
- https://www.pcre.org/original/changelog.txt
- https://www.pcre.org/original/changelog.txt
Modified: 2024-11-21
CVE-2015-2326
The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".
- http://lists.opensuse.org/opensuse-updates/2015-05/msg00014.html
- http://lists.opensuse.org/opensuse-updates/2015-05/msg00014.html
- https://bugs.exim.org/show_bug.cgi?id=1592
- https://bugs.exim.org/show_bug.cgi?id=1592
- https://fortiguard.com/zeroday/FG-VD-15-016
- https://fortiguard.com/zeroday/FG-VD-15-016
- https://www.pcre.org/original/changelog.txt
- https://www.pcre.org/original/changelog.txt
Modified: 2024-11-21
CVE-2015-2328
PCRE before 8.36 mishandles the /((?(R)a|(?1)))+/ pattern and related patterns with certain recursion, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.
- RHSA-2016:1025
- RHSA-2016:1025
- RHSA-2016:2750
- RHSA-2016:2750
- http://vcs.pcre.org/pcre/code/trunk/ChangeLog?view=markup
- http://vcs.pcre.org/pcre/code/trunk/ChangeLog?view=markup
- http://www.fortiguard.com/advisory/FG-VD-15-014/
- http://www.fortiguard.com/advisory/FG-VD-15-014/
- [oss-security] 20151128 Re: Heap Overflow in PCRE
- [oss-security] 20151128 Re: Heap Overflow in PCRE
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- 74924
- 74924
- http://www-01.ibm.com/support/docview.wss?uid=isg3T1023886
- http://www-01.ibm.com/support/docview.wss?uid=isg3T1023886
- https://bugs.exim.org/show_bug.cgi?id=1515
- https://bugs.exim.org/show_bug.cgi?id=1515
- https://jira.mongodb.org/browse/SERVER-17252
- https://jira.mongodb.org/browse/SERVER-17252
Closed bugs
update to 8.36
Closed vulnerabilities
BDU:2014-00338
Уязвимость системы управления базами данных MySQL, позволяющая злоумышленнику вызвать отказ в обслуживании
BDU:2014-00339
Уязвимость системы управления базами данных Marida DB, позволяющая злоумышленнику вызвать отказ в обслуживании
BDU:2014-00340
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00341
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00343
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00345
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00346
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00350
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00351
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00352
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00353
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00354
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00356
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00357
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2014-00361
Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных
BDU:2015-09979
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю, прошедшим аутентификацию, нарушить доступность данных
BDU:2015-09981
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09982
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09986
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09988
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09991
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09993
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-09994
Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании
BDU:2015-11050
Уязвимость системы управления базами данных MySQL, позволяющая нарушителю нарушить доступность защищаемой информации
BDU:2015-11052
Уязвимость системы управления базами данных MySQL, позволяющая нарушителю нарушить доступность защищаемой информации
BDU:2015-11860
Уязвимость системы управления базами данных MySQL, позволяющая нарушителю получить доступ к системе управления базами данных или выполнить произвольный код
BDU:2015-11874
Уязвимость системы управления базами данных MySQL, позволяющая нарушителю изменять данные
BDU:2015-11909
Уязвимость системы управления базами данных MySQL, позволяющая нарушителю получить доступ к MySQL Server или выполнить произвольный код
BDU:2015-11911
Уязвимость системы управления базами данных MySQL, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2015-12154
Уязвимость системы управления базами данных MySQL, позволяющая нарушителю нарушить доступность информации
BDU:2019-00640
Уязвимость компонента Server: Optimizer системы управления базами данных MySQL, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-01602
Уязвимость компонента Server: Replication системы управления базами данных MySQL, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-01656
Уязвимость компонента Server: Security: Privileges системы управления базами данных MySQL Server, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-03233
Уязвимость подкомпонента Server : Pluggable Auth компонента MySQL Server системы управления базами данных Oracle MySQL, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-03235
Уязвимость подкомпонента Server: Security: Privileges компонента MySQL Server системы управления базами данных Oracle MySQL, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-03236
Уязвимость подкомпонента Server: XML компонента MySQL Server системы управления базами данных Oracle MySQL, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-03900
Уязвимость компонента Server: Optimizer системы управления базами данных MySQL Server, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2020-00431
Уязвимость компонента C API системы управления базами данных MySQL Client, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2020-01528
Уязвимость компонента Server: Parser системы управления базами данных MySQL ,позволяющая нарушителю вызвать отказ в обслуживании
BDU:2020-02584
Уязвимость компонента C API системы управления базами данных MySQL Client, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
BDU:2020-02644
Уязвимость компонента C API системы управления базами данных MySQL Client, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2020-02647
Уязвимость компонента Server: DML системы управления базами данных MySQL Client, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2020-02648
Уязвимость компонента Server: Stored Procedure системы управления базами данных MySQL Server, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-00422
Уязвимость компонента C API системы управления базами данных MySQL Client, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
BDU:2021-02455
Уязвимость компонента Server: Parser системы управления базами данных Oracle MySQL Server, позволяющая нарушителю выполнить произвольный код
Modified: 2024-11-21
CVE-2005-0004
The mysqlaccess script in MySQL 4.0.23 and earlier, 4.1.x before 4.1.10, 5.0.x before 5.0.3, and other versions including 3.x, allows local users to overwrite arbitrary files or read temporary files via a symlink attack on temporary files.
- CLA-2005:947
- CLA-2005:947
- http://lists.mysql.com/internals/20600
- http://lists.mysql.com/internals/20600
- 20050118 [USN-63-1] MySQL client vulnerability
- 20050118 [USN-63-1] MySQL client vulnerability
- http://mysql.osuosl.org/doc/mysql/en/News-4.1.10.html
- http://mysql.osuosl.org/doc/mysql/en/News-4.1.10.html
- 13867
- 13867
- 101864
- 101864
- DSA-647
- DSA-647
- MDKSA-2005:036
- MDKSA-2005:036
- 12277
- 12277
- mysql-mysqlaccess-symlink(18922)
- mysql-mysqlaccess-symlink(18922)
Modified: 2024-11-21
CVE-2013-5908
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote attackers to affect availability via unknown vectors related to Error Handling.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- 102078
- 102078
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64896
- 64896
- oracle-cpujan2014-cve20135908(90389)
- oracle-cpujan2014-cve20135908(90389)
Modified: 2024-11-21
CVE-2014-0001
Buffer overflow in client/mysql.cc in Oracle MySQL and MariaDB before 5.5.35 allows remote database servers to cause a denial of service (crash) and possibly execute arbitrary code via a long server version string.
- http://bazaar.launchpad.net/~maria-captains/maria/5.5/revision/2502.565.64
- http://bazaar.launchpad.net/~maria-captains/maria/5.5/revision/2502.565.64
- 102713
- 102713
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 52161
- 52161
- GLSA-201409-04
- GLSA-201409-04
- MDVSA-2014:029
- MDVSA-2014:029
- 102714
- 102714
- 65298
- 65298
- 1029708
- 1029708
- https://bugzilla.redhat.com/show_bug.cgi?id=1054592
- https://bugzilla.redhat.com/show_bug.cgi?id=1054592
- mysql-cve20140001-bo(90901)
- mysql-cve20140001-bo(90901)
- https://mariadb.com/kb/en/mariadb-5535-changelog/
- https://mariadb.com/kb/en/mariadb-5535-changelog/
Modified: 2024-11-21
CVE-2014-0384
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to XML.
Modified: 2024-11-21
CVE-2014-0401
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors.
- 102071
- 102071
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64898
- 64898
- oracle-cpujan2014-cve20140401(90382)
- oracle-cpujan2014-cve20140401(90382)
Modified: 2024-11-21
CVE-2014-0412
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to InnoDB.
- 102067
- 102067
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64880
- 64880
- oracle-cpujan2014-cve20140412(90378)
- oracle-cpujan2014-cve20140412(90378)
Modified: 2024-11-21
CVE-2014-0420
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.34 and earlier, and 5.6.14 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Replication.
- 102077
- 102077
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64888
- 64888
- oracle-cpujan2014-cve20140420(90388)
- oracle-cpujan2014-cve20140420(90388)
Modified: 2024-11-21
CVE-2014-0437
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.
- 102074
- 102074
- RHSA-2014:0164
- RHSA-2014:0164
- RHSA-2014:0173
- RHSA-2014:0173
- RHSA-2014:0186
- RHSA-2014:0186
- RHSA-2014:0189
- RHSA-2014:0189
- 56491
- 56491
- 56541
- 56541
- 56580
- 56580
- GLSA-201409-04
- GLSA-201409-04
- USN-2086-1
- USN-2086-1
- DSA-2845
- DSA-2845
- DSA-2848
- DSA-2848
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
- 64758
- 64758
- 64849
- 64849
- oracle-cpujan2014-cve20140437(90385)
- oracle-cpujan2014-cve20140437(90385)
Modified: 2024-11-21
CVE-2014-2419
Unspecified vulnerability in Oracle MySQL Server 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Partition.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66880
- 66880
Modified: 2024-11-21
CVE-2014-2430
Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote authenticated users to affect availability via unknown vectors related to Performance Schema.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66858
- 66858
Modified: 2024-11-21
CVE-2014-2431
Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote attackers to affect availability via unknown vectors related to Options.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66890
- 66890
Modified: 2024-11-21
CVE-2014-2432
Unspecified vulnerability Oracle the MySQL Server component 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Federated.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66875
- 66875
Modified: 2024-11-21
CVE-2014-2436
Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to RBR.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66896
- 66896
Modified: 2024-11-21
CVE-2014-2438
Unspecified vulnerability in Oracle MySQL Server 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Replication.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66846
- 66846
Modified: 2024-11-21
CVE-2014-2440
Unspecified vulnerability in the MySQL Client component in Oracle MySQL 5.5.36 and earlier and 5.6.16 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
- RHSA-2014:0522
- RHSA-2014:0522
- RHSA-2014:0536
- RHSA-2014:0536
- RHSA-2014:0537
- RHSA-2014:0537
- RHSA-2014:0702
- RHSA-2014:0702
- GLSA-201409-04
- GLSA-201409-04
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html
- 66850
- 66850
Modified: 2024-11-21
CVE-2014-2494
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to ENARC.
- SUSE-SU-2014:1072
- SUSE-SU-2014:1072
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 60425
- 60425
- DSA-2985
- DSA-2985
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 1030578
- 1030578
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
Modified: 2024-11-21
CVE-2014-4207
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to SROPTZR.
- SUSE-SU-2014:1072
- SUSE-SU-2014:1072
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 60425
- 60425
- DSA-2985
- DSA-2985
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 68593
- 68593
- 1030578
- 1030578
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- oracle-cpujul2014-cve20144207(94624)
- oracle-cpujul2014-cve20144207(94624)
Modified: 2024-11-21
CVE-2014-4243
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to ENFED.
- SUSE-SU-2014:1072
- SUSE-SU-2014:1072
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 60425
- 60425
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 68611
- 68611
- 1030578
- 1030578
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- oracle-cpujul2014-cve20144243(94628)
- oracle-cpujul2014-cve20144243(94628)
Modified: 2024-11-21
CVE-2014-4258
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier and 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SRINFOSC.
- SUSE-SU-2014:1072
- SUSE-SU-2014:1072
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 60425
- 60425
- DSA-2985
- DSA-2985
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 68564
- 68564
- 1030578
- 1030578
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- oracle-cpujul2014-cve20144258(94620)
- oracle-cpujul2014-cve20144258(94620)
Modified: 2024-11-21
CVE-2014-4260
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier, and 5.6.17 and earlier, allows remote authenticated users to affect integrity and availability via vectors related to SRCHAR.
- SUSE-SU-2014:1072
- SUSE-SU-2014:1072
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 60425
- 60425
- DSA-2985
- DSA-2985
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities
- 68573
- 68573
- 1030578
- 1030578
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- oracle-cpujul2014-cve20144260(94621)
- oracle-cpujul2014-cve20144260(94621)
Modified: 2024-11-21
CVE-2014-4274
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows local users to affect confidentiality, integrity, and availability via vectors related to SERVER:MyISAM.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 69732
- 69732
Modified: 2024-11-21
CVE-2014-4287
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:CHARACTER SETS.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70517
- 70517
Modified: 2024-11-21
CVE-2014-6463
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:REPLICATION ROW FORMAT BINARY LOG DML.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70532
- 70532
Modified: 2024-11-21
CVE-2014-6464
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:INNODB DML FOREIGN KEYS.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70451
- 70451
Modified: 2024-11-21
CVE-2014-6469
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:OPTIMIZER.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70446
- 70446
Modified: 2024-11-21
CVE-2014-6478
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote attackers to affect integrity via vectors related to SERVER:SSL:yaSSL.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70489
- 70489
Modified: 2024-11-21
CVE-2014-6484
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to SERVER:DML.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70455
- 70455
Modified: 2024-11-21
CVE-2014-6491
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to SERVER:SSL:yaSSL, a different vulnerability than CVE-2014-6500.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70444
- 70444
Modified: 2024-11-21
CVE-2014-6494
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulnerability than CVE-2014-6496.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70497
- 70497
Modified: 2024-11-21
CVE-2014-6495
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote attackers to affect availability via vectors related to SERVER:SSL:yaSSL.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70496
- 70496
Modified: 2024-11-21
CVE-2014-6496
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulnerability than CVE-2014-6494.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70469
- 70469
Modified: 2024-11-21
CVE-2014-6500
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to SERVER:SSL:yaSSL, a different vulnerability than CVE-2014-6491.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70478
- 70478
Modified: 2024-11-21
CVE-2014-6505
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to SERVER:MEMORY STORAGE ENGINE.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70516
- 70516
Modified: 2024-11-21
CVE-2014-6507
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SERVER:DML.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70550
- 70550
Modified: 2024-11-21
CVE-2014-6520
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:DDL.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70510
- 70510
Modified: 2024-11-21
CVE-2014-6530
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to CLIENT:MYSQLDUMP.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70486
- 70486
Modified: 2024-11-21
CVE-2014-6551
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows local users to affect confidentiality via vectors related to CLIENT:MYSQLADMIN.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70462
- 70462
Modified: 2024-11-21
CVE-2014-6555
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SERVER:DML.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70530
- 70530
Modified: 2024-11-21
CVE-2014-6559
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect confidentiality via vectors related to C API SSL CERTIFICATE HANDLING.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- 61579
- 61579
- 62073
- 62073
- GLSA-201411-02
- GLSA-201411-02
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
- 70487
- 70487
Modified: 2024-11-21
CVE-2014-6568
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier, and 5.6.21 and earlier, allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DML.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72210
- 72210
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0374
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Security : Privileges : Foreign Key.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72227
- 72227
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- oracle-cpujan2015-cve20150374(100191)
- oracle-cpujan2015-cve20150374(100191)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0381
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote attackers to affect availability via unknown vectors related to Server : Replication, a different vulnerability than CVE-2015-0382.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72214
- 72214
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- oracle-cpujan2015-cve20150381(100185)
- oracle-cpujan2015-cve20150381(100185)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0382
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote attackers to affect availability via unknown vectors related to Server : Replication, a different vulnerability than CVE-2015-0381.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72200
- 72200
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- oracle-cpujan2015-cve20150382(100184)
- oracle-cpujan2015-cve20150382(100184)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0391
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72205
- 72205
- 1031581
- 1031581
- oracle-cpujan2015-cve20150391(100186)
- oracle-cpujan2015-cve20150391(100186)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0411
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier, and 5.6.21 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Server : Security : Encryption.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72191
- 72191
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- oracle-cpujan2015-cve20150411(100183)
- oracle-cpujan2015-cve20150411(100183)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0432
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DDL : Foreign Key.
- FEDORA-2015-1162
- FEDORA-2015-1162
- SUSE-SU-2015:0743
- SUSE-SU-2015:0743
- RHSA-2015:0116
- RHSA-2015:0116
- RHSA-2015:0117
- RHSA-2015:0117
- RHSA-2015:0118
- RHSA-2015:0118
- RHSA-2015:1628
- RHSA-2015:1628
- 62728
- 62728
- 62730
- 62730
- 62732
- 62732
- DSA-3135
- DSA-3135
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html
- 72217
- 72217
- 1031581
- 1031581
- USN-2480-1
- USN-2480-1
- oracle-cpujan2015-cve20150432(100187)
- oracle-cpujan2015-cve20150432(100187)
- GLSA-201504-05
- GLSA-201504-05
Modified: 2024-11-21
CVE-2015-0433
Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote authenticated users to affect availability via vectors related to InnoDB : DML.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-0441
Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Security : Encryption.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-0499
Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, and 5.6.23 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Federated.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- MDVSA-2015:227
- MDVSA-2015:227
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-0501
Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, and 5.6.23 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Compiling.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- MDVSA-2015:227
- MDVSA-2015:227
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-0505
Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, and 5.6.23 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- MDVSA-2015:227
- MDVSA-2015:227
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 74112
- 74112
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-2325
The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a group containing a forward reference repeated a large number of times within a repeated outer group that has a zero minimum quantifier.
- http://lists.opensuse.org/opensuse-updates/2015-05/msg00014.html
- http://lists.opensuse.org/opensuse-updates/2015-05/msg00014.html
- https://bugs.exim.org/show_bug.cgi?id=1591
- https://bugs.exim.org/show_bug.cgi?id=1591
- https://fortiguard.com/zeroday/FG-VD-15-015
- https://fortiguard.com/zeroday/FG-VD-15-015
- https://www.pcre.org/original/changelog.txt
- https://www.pcre.org/original/changelog.txt
Modified: 2024-11-21
CVE-2015-2568
Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote attackers to affect availability via unknown vectors related to Server : Security : Privileges.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 74073
- 74073
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-2571
Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, and 5.6.23 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Optimizer.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- MDVSA-2015:227
- MDVSA-2015:227
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 74095
- 74095
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- https://mariadb.com/kb/en/mariadb/mariadb-5543-release-notes/
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-2573
Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
- SUSE-SU-2015:0946
- SUSE-SU-2015:0946
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3229
- DSA-3229
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
- 74078
- 74078
- 1032121
- 1032121
- USN-2575-1
- USN-2575-1
- GLSA-201507-19
- GLSA-201507-19
Modified: 2024-11-21
CVE-2015-2582
Unspecified vulnerability in Oracle MySQL Server 5.5.43 and earlier and 5.6.24 and earlier allows remote authenticated users to affect availability via vectors related to GIS.
- openSUSE-SU-2015:1629
- openSUSE-SU-2015:1629
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1630
- RHSA-2015:1630
- RHSA-2015:1646
- RHSA-2015:1646
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3308
- DSA-3308
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- 75751
- 75751
- 1032911
- 1032911
- USN-2674-1
- USN-2674-1
- GLSA-201610-06
- GLSA-201610-06
Modified: 2024-11-21
CVE-2015-2620
Unspecified vulnerability in Oracle MySQL Server 5.5.43 and earlier and 5.6.23 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Security : Privileges.
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
- openSUSE-SU-2015:1629
- openSUSE-SU-2015:1629
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1630
- RHSA-2015:1630
- RHSA-2015:1646
- RHSA-2015:1646
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3308
- DSA-3308
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- 75837
- 75837
- 1032911
- 1032911
- USN-2674-1
- USN-2674-1
- GLSA-201610-06
- GLSA-201610-06
Modified: 2024-11-21
CVE-2015-2643
Unspecified vulnerability in Oracle MySQL Server 5.5.43 and earlier and 5.6.24 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Optimizer.
- openSUSE-SU-2015:1629
- openSUSE-SU-2015:1629
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1630
- RHSA-2015:1630
- RHSA-2015:1646
- RHSA-2015:1646
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3308
- DSA-3308
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- 75830
- 75830
- 1032911
- 1032911
- USN-2674-1
- USN-2674-1
- GLSA-201610-06
- GLSA-201610-06
Modified: 2024-11-21
CVE-2015-2648
Unspecified vulnerability in Oracle MySQL Server 5.5.43 and earlier and 5.6.24 and earlier allows remote authenticated users to affect availability via vectors related to DML.
- openSUSE-SU-2015:1629
- openSUSE-SU-2015:1629
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1630
- RHSA-2015:1630
- RHSA-2015:1646
- RHSA-2015:1646
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3308
- DSA-3308
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- 75822
- 75822
- 1032911
- 1032911
- USN-2674-1
- USN-2674-1
- GLSA-201610-06
- GLSA-201610-06
Modified: 2024-11-21
CVE-2015-3152
Oracle MySQL before 5.7.3, Oracle MySQL Connector/C (aka libmysqlclient) before 6.1.3, and MariaDB before 5.5.44 use the --ssl option to mean that SSL is optional, which allows man-in-the-middle attackers to spoof servers via a cleartext-downgrade attack, aka a "BACKRONYM" attack.
- FEDORA-2015-10849
- FEDORA-2015-10849
- FEDORA-2015-10831
- FEDORA-2015-10831
- http://mysqlblog.fivefarmers.com/2014/04/02/redefining-ssl-option/
- http://mysqlblog.fivefarmers.com/2014/04/02/redefining-ssl-option/
- http://mysqlblog.fivefarmers.com/2015/04/29/ssltls-in-5-6-and-5-5-ocert-advisory/
- http://mysqlblog.fivefarmers.com/2015/04/29/ssltls-in-5-6-and-5-5-ocert-advisory/
- http://packetstormsecurity.com/files/131688/MySQL-SSL-TLS-Downgrade.html
- http://packetstormsecurity.com/files/131688/MySQL-SSL-TLS-Downgrade.html
- RHSA-2015:1646
- RHSA-2015:1646
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3311
- DSA-3311
- http://www.ocert.org/advisories/ocert-2015-003.html
- http://www.ocert.org/advisories/ocert-2015-003.html
- 20150429 [oCERT-2015-003] MySQL SSL/TLS downgrade
- 20150429 [oCERT-2015-003] MySQL SSL/TLS downgrade
- 74398
- 74398
- 1032216
- 1032216
- https://access.redhat.com/security/cve/cve-2015-3152
- https://access.redhat.com/security/cve/cve-2015-3152
- https://github.com/mysql/mysql-server/commit/3bd5589e1a5a93f9c224badf983cd65c45215390
- https://github.com/mysql/mysql-server/commit/3bd5589e1a5a93f9c224badf983cd65c45215390
- https://jira.mariadb.org/browse/MDEV-7937
- https://jira.mariadb.org/browse/MDEV-7937
- https://www.duosecurity.com/blog/backronym-mysql-vulnerability
- https://www.duosecurity.com/blog/backronym-mysql-vulnerability
Modified: 2024-11-21
CVE-2015-4752
Unspecified vulnerability in Oracle MySQL Server 5.5.43 and earlier and 5.6.24 and earlier allows remote authenticated users to affect availability via vectors related to Server : I_S.
- openSUSE-SU-2015:1629
- openSUSE-SU-2015:1629
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1630
- RHSA-2015:1630
- RHSA-2015:1646
- RHSA-2015:1646
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3308
- DSA-3308
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- 75849
- 75849
- 1032911
- 1032911
- USN-2674-1
- USN-2674-1
- GLSA-201610-06
- GLSA-201610-06
Modified: 2024-11-21
CVE-2015-4757
Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier and 5.6.23 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Optimizer.
- openSUSE-SU-2015:1629
- openSUSE-SU-2015:1629
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1629
- RHSA-2015:1629
- RHSA-2015:1630
- RHSA-2015:1630
- RHSA-2015:1646
- RHSA-2015:1646
- RHSA-2015:1647
- RHSA-2015:1647
- RHSA-2015:1665
- RHSA-2015:1665
- DSA-3311
- DSA-3311
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
- 75759
- 75759
- 1032911
- 1032911
- USN-2674-1
- USN-2674-1
- GLSA-201610-06
- GLSA-201610-06
Modified: 2024-11-21
CVE-2015-4816
Unspecified vulnerability in Oracle MySQL Server 5.5.44 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : InnoDB.
- FEDORA-2016-e30164d0a2
- FEDORA-2016-e30164d0a2
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2016:0534
- RHSA-2016:0534
- RHSA-2016:1481
- RHSA-2016:1481
- DSA-3377
- DSA-3377
- DSA-3385
- DSA-3385
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- 77134
- 77134
- 1033894
- 1033894
- USN-2781-1
- USN-2781-1
- RHSA-2016:1132
- RHSA-2016:1132
Modified: 2024-11-21
CVE-2015-4819
Unspecified vulnerability in Oracle MySQL Server 5.5.44 and earlier, and 5.6.25 and earlier, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Client programs.
- FEDORA-2016-e30164d0a2
- FEDORA-2016-e30164d0a2
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2016:0534
- RHSA-2016:0534
- RHSA-2016:1481
- RHSA-2016:1481
- DSA-3377
- DSA-3377
- DSA-3385
- DSA-3385
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- 77196
- 77196
- 1033894
- 1033894
- USN-2781-1
- USN-2781-1
- RHSA-2016:1132
- RHSA-2016:1132
Modified: 2024-11-21
CVE-2015-4864
Unspecified vulnerability in Oracle MySQL Server 5.5.43 and earlier and 5.6.24 and earlier allows remote authenticated users to affect integrity via unknown vectors related to Server : Security : Privileges.
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2015:1665
- RHSA-2015:1665
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html
- 77187
- 77187
- 1033894
- 1033894
- USN-2781-1
- USN-2781-1
Modified: 2024-11-21
CVE-2015-4879
Unspecified vulnerability in Oracle MySQL Server 5.5.44 and earlier, and 5.6.25 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to DML.
- FEDORA-2016-e30164d0a2
- FEDORA-2016-e30164d0a2
- RHSA-2015:1628
- RHSA-2015:1628
- RHSA-2016:0534
- RHSA-2016:0534
- RHSA-2016:1481
- RHSA-2016:1481
- DSA-3377
- DSA-3377
- DSA-3385
- DSA-3385
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- 77140
- 77140
- 1033894
- 1033894
- USN-2781-1
- USN-2781-1
- RHSA-2016:1132
- RHSA-2016:1132
Modified: 2024-11-21
CVE-2019-2481
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
- http://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html
- http://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html
- 106619
- 106619
- RHSA-2019:2484
- RHSA-2019:2484
- RHSA-2019:2511
- RHSA-2019:2511
- https://security.netapp.com/advisory/ntap-20190118-0002/
- https://security.netapp.com/advisory/ntap-20190118-0002/
- USN-3867-1
- USN-3867-1
Modified: 2024-11-21
CVE-2019-2614
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.6.43 and prior, 5.7.25 and prior and 8.0.15 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2019:1915
- openSUSE-SU-2019:1915
- openSUSE-SU-2019:1913
- openSUSE-SU-2019:1913
- http://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html
- http://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html
- RHSA-2019:2327
- RHSA-2019:2327
- RHSA-2019:2484
- RHSA-2019:2484
- RHSA-2019:2511
- RHSA-2019:2511
- RHSA-2019:3708
- RHSA-2019:3708
- FEDORA-2019-96516ce0ac
- FEDORA-2019-96516ce0ac
- FEDORA-2019-c106e46a95
- FEDORA-2019-c106e46a95
- https://support.f5.com/csp/article/K52514501
- https://support.f5.com/csp/article/K52514501
- USN-3957-1
- USN-3957-1
- USN-3957-2
- USN-3957-2
- USN-3957-3
- USN-3957-3
- USN-4070-3
- USN-4070-3
Modified: 2024-11-21
CVE-2019-2627
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 5.6.43 and prior, 5.7.25 and prior and 8.0.15 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2019:1915
- openSUSE-SU-2019:1915
- openSUSE-SU-2019:1913
- openSUSE-SU-2019:1913
- http://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html
- http://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html
- RHSA-2019:2327
- RHSA-2019:2327
- RHSA-2019:2484
- RHSA-2019:2484
- RHSA-2019:2511
- RHSA-2019:2511
- RHSA-2019:3708
- RHSA-2019:3708
- https://support.f5.com/csp/article/K32798641
- https://support.f5.com/csp/article/K32798641
- USN-3957-1
- USN-3957-1
- USN-3957-2
- USN-3957-2
- USN-3957-3
- USN-3957-3
- USN-4070-3
- USN-4070-3
Modified: 2024-11-21
CVE-2019-2737
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Pluggable Auth). Supported versions that are affected are 5.6.44 and prior, 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2019:2698
- openSUSE-SU-2019:2698
- http://packetstormsecurity.com/files/153862/Slackware-Security-Advisory-mariadb-Updates.html
- http://packetstormsecurity.com/files/153862/Slackware-Security-Advisory-mariadb-Updates.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
- RHSA-2019:2484
- RHSA-2019:2484
- RHSA-2019:2511
- RHSA-2019:2511
- RHSA-2019:3708
- RHSA-2019:3708
- FEDORA-2019-96516ce0ac
- FEDORA-2019-96516ce0ac
- FEDORA-2019-c106e46a95
- FEDORA-2019-c106e46a95
- 20190802 [slackware-security] mariadb (SSA:2019-213-01)
- 20190802 [slackware-security] mariadb (SSA:2019-213-01)
- https://support.f5.com/csp/article/K51272092
- https://support.f5.com/csp/article/K51272092
- https://support.f5.com/csp/article/K51272092?utm_source=f5support&%3Butm_medium=RSS
- https://support.f5.com/csp/article/K51272092?utm_source=f5support&%3Butm_medium=RSS
- USN-4070-1
- USN-4070-1
- USN-4070-2
- USN-4070-2
- USN-4070-3
- USN-4070-3
Modified: 2024-11-21
CVE-2019-2739
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 5.6.44 and prior, 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.0 Base Score 5.1 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).
- openSUSE-SU-2019:2698
- openSUSE-SU-2019:2698
- http://packetstormsecurity.com/files/153862/Slackware-Security-Advisory-mariadb-Updates.html
- http://packetstormsecurity.com/files/153862/Slackware-Security-Advisory-mariadb-Updates.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
- RHSA-2019:2484
- RHSA-2019:2484
- RHSA-2019:2511
- RHSA-2019:2511
- RHSA-2019:3708
- RHSA-2019:3708
- FEDORA-2019-96516ce0ac
- FEDORA-2019-96516ce0ac
- FEDORA-2019-c106e46a95
- FEDORA-2019-c106e46a95
- 20190802 [slackware-security] mariadb (SSA:2019-213-01)
- 20190802 [slackware-security] mariadb (SSA:2019-213-01)
- https://support.f5.com/csp/article/K51272092
- https://support.f5.com/csp/article/K51272092
- https://support.f5.com/csp/article/K51272092?utm_source=f5support&%3Butm_medium=RSS
- https://support.f5.com/csp/article/K51272092?utm_source=f5support&%3Butm_medium=RSS
- USN-4070-1
- USN-4070-1
- USN-4070-2
- USN-4070-2
- USN-4070-3
- USN-4070-3
Modified: 2024-11-21
CVE-2019-2740
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: XML). Supported versions that are affected are 5.6.44 and prior, 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2019:2698
- openSUSE-SU-2019:2698
- http://packetstormsecurity.com/files/153862/Slackware-Security-Advisory-mariadb-Updates.html
- http://packetstormsecurity.com/files/153862/Slackware-Security-Advisory-mariadb-Updates.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
- RHSA-2019:2484
- RHSA-2019:2484
- RHSA-2019:2511
- RHSA-2019:2511
- RHSA-2019:3708
- RHSA-2019:3708
- FEDORA-2019-96516ce0ac
- FEDORA-2019-96516ce0ac
- FEDORA-2019-c106e46a95
- FEDORA-2019-c106e46a95
- 20190802 [slackware-security] mariadb (SSA:2019-213-01)
- 20190802 [slackware-security] mariadb (SSA:2019-213-01)
- https://support.f5.com/csp/article/K03444640
- https://support.f5.com/csp/article/K03444640
- https://support.f5.com/csp/article/K03444640?utm_source=f5support&%3Butm_medium=RSS
- https://support.f5.com/csp/article/K03444640?utm_source=f5support&%3Butm_medium=RSS
- USN-4070-1
- USN-4070-1
- USN-4070-2
- USN-4070-2
- USN-4070-3
- USN-4070-3
Modified: 2024-11-21
CVE-2019-2805
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 5.6.44 and prior, 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2019:2698
- openSUSE-SU-2019:2698
- http://packetstormsecurity.com/files/153862/Slackware-Security-Advisory-mariadb-Updates.html
- http://packetstormsecurity.com/files/153862/Slackware-Security-Advisory-mariadb-Updates.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
- RHSA-2019:2484
- RHSA-2019:2484
- RHSA-2019:2511
- RHSA-2019:2511
- RHSA-2019:3708
- RHSA-2019:3708
- 20190802 [slackware-security] mariadb (SSA:2019-213-01)
- 20190802 [slackware-security] mariadb (SSA:2019-213-01)
- https://support.f5.com/csp/article/K04831884
- https://support.f5.com/csp/article/K04831884
- https://support.f5.com/csp/article/K04831884?utm_source=f5support&%3Butm_medium=RSS
- https://support.f5.com/csp/article/K04831884?utm_source=f5support&%3Butm_medium=RSS
- USN-4070-1
- USN-4070-1
- USN-4070-2
- USN-4070-2
- USN-4070-3
- USN-4070-3
Modified: 2024-11-21
CVE-2019-2974
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.6.45 and prior, 5.7.27 and prior and 8.0.17 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2019:2698
- openSUSE-SU-2019:2698
- http://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- FEDORA-2019-d40df38271
- FEDORA-2019-d40df38271
- FEDORA-2019-c1fab3f139
- FEDORA-2019-c1fab3f139
- FEDORA-2019-48a0a07033
- FEDORA-2019-48a0a07033
- GLSA-202105-27
- GLSA-202105-27
- https://security.netapp.com/advisory/ntap-20191017-0002/
- https://security.netapp.com/advisory/ntap-20191017-0002/
- USN-4195-1
- USN-4195-1
- USN-4195-2
- USN-4195-2
Modified: 2024-11-21
CVE-2020-2574
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.46 and prior, 5.7.28 and prior and 8.0.18 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Client. CVSS 3.0 Base Score 5.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2020:0289
- openSUSE-SU-2020:0289
- [oss-security] 20200929 QEMU: NULL pointer derefrence issues
- [oss-security] 20200929 QEMU: NULL pointer derefrence issues
- GLSA-202105-27
- GLSA-202105-27
- https://security.netapp.com/advisory/ntap-20200122-0002/
- https://security.netapp.com/advisory/ntap-20200122-0002/
- USN-4250-1
- USN-4250-1
- USN-4250-2
- USN-4250-2
- https://www.oracle.com/security-alerts/cpujan2020.html
- https://www.oracle.com/security-alerts/cpujan2020.html
Modified: 2024-11-21
CVE-2020-2752
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.47 and prior, 5.7.27 and prior and 8.0.17 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Client. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2020:0870
- openSUSE-SU-2020:0870
- FEDORA-2020-35f52d9370
- FEDORA-2020-35f52d9370
- FEDORA-2020-ac2d47d89a
- FEDORA-2020-ac2d47d89a
- GLSA-202012-08
- GLSA-202012-08
- GLSA-202105-27
- GLSA-202105-27
- https://security.netapp.com/advisory/ntap-20200416-0003/
- https://security.netapp.com/advisory/ntap-20200416-0003/
- https://www.oracle.com/security-alerts/cpuapr2020.html
- https://www.oracle.com/security-alerts/cpuapr2020.html
Modified: 2024-11-21
CVE-2020-2780
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 5.6.47 and prior, 5.7.29 and prior and 8.0.19 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
- FEDORA-2020-261c9ddd7c
- FEDORA-2020-261c9ddd7c
- FEDORA-2020-136dc82437
- FEDORA-2020-136dc82437
- FEDORA-2020-20ac7c92a1
- FEDORA-2020-20ac7c92a1
- FEDORA-2020-ac2d47d89a
- FEDORA-2020-ac2d47d89a
- GLSA-202105-27
- GLSA-202105-27
- https://security.netapp.com/advisory/ntap-20200416-0003/
- https://security.netapp.com/advisory/ntap-20200416-0003/
- USN-4350-1
- USN-4350-1
- https://www.oracle.com/security-alerts/cpuapr2020.html
- https://www.oracle.com/security-alerts/cpuapr2020.html
Modified: 2024-11-21
CVE-2020-2812
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affected are 5.6.47 and prior, 5.7.29 and prior and 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2020:0870
- openSUSE-SU-2020:0870
- FEDORA-2020-261c9ddd7c
- FEDORA-2020-261c9ddd7c
- FEDORA-2020-136dc82437
- FEDORA-2020-136dc82437
- FEDORA-2020-20ac7c92a1
- FEDORA-2020-20ac7c92a1
- FEDORA-2020-35f52d9370
- FEDORA-2020-35f52d9370
- FEDORA-2020-ac2d47d89a
- FEDORA-2020-ac2d47d89a
- GLSA-202012-08
- GLSA-202012-08
- GLSA-202105-27
- GLSA-202105-27
- https://security.netapp.com/advisory/ntap-20200416-0003/
- https://security.netapp.com/advisory/ntap-20200416-0003/
- USN-4350-1
- USN-4350-1
- https://www.oracle.com/security-alerts/cpuapr2020.html
- https://www.oracle.com/security-alerts/cpuapr2020.html
Modified: 2024-11-21
CVE-2020-2922
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.47 and prior, 5.7.29 and prior and 8.0.18 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.0 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).
Modified: 2024-11-21
CVE-2021-2007
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.47 and prior, 5.7.29 and prior and 8.0.19 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).
- FEDORA-2021-b1d1655cef
- FEDORA-2021-b1d1655cef
- FEDORA-2021-db50ab62d3
- FEDORA-2021-db50ab62d3
- GLSA-202105-27
- GLSA-202105-27
- https://security.netapp.com/advisory/ntap-20210622-0001/
- https://security.netapp.com/advisory/ntap-20210622-0001/
- https://www.oracle.com/security-alerts/cpujan2021.html
- https://www.oracle.com/security-alerts/cpujan2021.html
Modified: 2024-11-21
CVE-2021-2144
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported versions that are affected are 5.7.29 and prior and 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in takeover of MySQL Server. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).