ALT-BU-2019-4121-2
Branch p9 update bulletin.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2013-7401
The parse_request function in request.c in c-icap 0.2.x allows remote attackers to cause a denial of service (crash) via a URI without a " " or "?" character in an ICAP request, as demonstrated by use of the OPTIONS method.
- http://advisories.mageia.org/MGASA-2014-0530.html
- http://advisories.mageia.org/MGASA-2014-0530.html
- [oss-security] 20140915 Re: CVE assignment for c-icap Server
- [oss-security] 20140915 Re: CVE assignment for c-icap Server
- http://osvdb.org/ref/89/c-icap.txt
- http://osvdb.org/ref/89/c-icap.txt
- GLSA-201409-07
- GLSA-201409-07
- http://sourceforge.net/p/c-icap/code/1018/
- http://sourceforge.net/p/c-icap/code/1018/
- MDVSA-2015:001
- MDVSA-2015:001
- 89304
- 89304
Modified: 2024-11-21
CVE-2013-7402
Multiple unspecified vulnerabilities in request.c in c-icap 0.2.x allow remote attackers to cause a denial of service (crash) via a crafted ICAP request.
- http://advisories.mageia.org/MGASA-2014-0530.html
- http://advisories.mageia.org/MGASA-2014-0530.html
- [oss-security] 20140915 Re: CVE assignment for c-icap Server
- [oss-security] 20140915 Re: CVE assignment for c-icap Server
- 61381
- 61381
- 61444
- 61444
- http://sourceforge.net/p/c-icap/code/1018/
- http://sourceforge.net/p/c-icap/code/1018/
- DSA-3101
- DSA-3101
- MDVSA-2015:001
- MDVSA-2015:001
Closed bugs
Изменить URL на https://github.com/c-icap
Closed vulnerabilities
BDU:2019-03900
Уязвимость компонента Server: Optimizer системы управления базами данных MySQL Server, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-03937
Уязвимость компонента InnoDB системы управления базами данных Oracle MySQL Server, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2020-02647
Уязвимость компонента Server: DML системы управления базами данных MySQL Client, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-02455
Уязвимость компонента Server: Parser системы управления базами данных Oracle MySQL Server, позволяющая нарушителю выполнить произвольный код
Modified: 2024-11-21
CVE-2019-2938
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.27 and prior and 8.0.17 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2019:2698
- openSUSE-SU-2019:2698
- http://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- FEDORA-2019-d40df38271
- FEDORA-2019-d40df38271
- FEDORA-2019-c1fab3f139
- FEDORA-2019-c1fab3f139
- FEDORA-2019-48a0a07033
- FEDORA-2019-48a0a07033
- GLSA-202105-27
- GLSA-202105-27
- https://security.netapp.com/advisory/ntap-20191017-0002/
- https://security.netapp.com/advisory/ntap-20191017-0002/
- USN-4195-1
- USN-4195-1
- USN-4195-2
- USN-4195-2
Modified: 2024-11-21
CVE-2019-2974
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.6.45 and prior, 5.7.27 and prior and 8.0.17 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
- openSUSE-SU-2019:2698
- openSUSE-SU-2019:2698
- http://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- FEDORA-2019-d40df38271
- FEDORA-2019-d40df38271
- FEDORA-2019-c1fab3f139
- FEDORA-2019-c1fab3f139
- FEDORA-2019-48a0a07033
- FEDORA-2019-48a0a07033
- GLSA-202105-27
- GLSA-202105-27
- https://security.netapp.com/advisory/ntap-20191017-0002/
- https://security.netapp.com/advisory/ntap-20191017-0002/
- USN-4195-1
- USN-4195-1
- USN-4195-2
- USN-4195-2
Modified: 2024-11-21
CVE-2020-2780
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 5.6.47 and prior, 5.7.29 and prior and 8.0.19 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
- FEDORA-2020-261c9ddd7c
- FEDORA-2020-261c9ddd7c
- FEDORA-2020-136dc82437
- FEDORA-2020-136dc82437
- FEDORA-2020-20ac7c92a1
- FEDORA-2020-20ac7c92a1
- FEDORA-2020-ac2d47d89a
- FEDORA-2020-ac2d47d89a
- GLSA-202105-27
- GLSA-202105-27
- https://security.netapp.com/advisory/ntap-20200416-0003/
- https://security.netapp.com/advisory/ntap-20200416-0003/
- USN-4350-1
- USN-4350-1
- https://www.oracle.com/security-alerts/cpuapr2020.html
- https://www.oracle.com/security-alerts/cpuapr2020.html
Modified: 2024-11-21
CVE-2021-2144
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported versions that are affected are 5.7.29 and prior and 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in takeover of MySQL Server. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).
Closed bugs
Отсутствует ярлык у приложения