PT-2014-1186 · Oracle+6 · Mysql Server+6

Publicado

2014-02-25

·

Atualizado

2022-08-29

·

CVE-2014-0384

CVSS v2.0

4.0

Média

VetorAV:N/AC:L/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Oracle MySQL versions 5.5.35 and earlier Oracle MySQL versions 5.6.15 and earlier
Description The issue allows remote authenticated users to affect availability via vectors related to XML in the MySQL Server component.
Recommendations For Oracle MySQL versions 5.5.35 and earlier, update to a version later than 5.5.35. For Oracle MySQL versions 5.6.15 and earlier, update to a version later than 5.6.15. As a temporary workaround, consider restricting access to the XML subcomponent in the MySQL Server until a patch is available.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2015-1152
ALT-PU-2015-1749
BDU:2014-00341
CESA-2014_0522
CESA-2014_0537
CVE-2014-0384
DSA-2919-1
MGASA-2014-0239
RHSA-2014:0522
RHSA-2014:0536
RHSA-2014:0537
RHSA-2014:0702
RHSA-2014_0536
RHSA-2014_0702
USN-2170-1

Produtos afetados

Alt Linux
Centos
Mariadb Server
Mysql Server
Red Hat
Suse
Ubuntu