PT-2014-1186 · Oracle+6 · Mysql Server+6

Published

2014-02-25

·

Updated

2022-08-29

·

CVE-2014-0384

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Oracle MySQL versions 5.5.35 and earlier Oracle MySQL versions 5.6.15 and earlier
Description The issue allows remote authenticated users to affect availability via vectors related to XML in the MySQL Server component.
Recommendations For Oracle MySQL versions 5.5.35 and earlier, update to a version later than 5.5.35. For Oracle MySQL versions 5.6.15 and earlier, update to a version later than 5.6.15. As a temporary workaround, consider restricting access to the XML subcomponent in the MySQL Server until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1152
ALT-PU-2015-1749
BDU:2014-00341
CESA-2014_0522
CESA-2014_0537
CVE-2014-0384
DSA-2919-1
MGASA-2014-0239
RHSA-2014:0522
RHSA-2014:0536
RHSA-2014:0537
RHSA-2014:0702
RHSA-2014_0536
RHSA-2014_0702
USN-2170-1

Affected Products

Alt Linux
Centos
Mariadb Server
Mysql Server
Red Hat
Suse
Ubuntu