PT-2014-1188 · Oracle+6 · Mysql Server+6

Published

2014-02-25

·

Updated

2022-09-16

·

CVE-2014-2438

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Oracle MySQL versions 5.5.35 and earlier Oracle MySQL versions 5.6.15 and earlier
Description The issue affects the MySQL Server component in Oracle MySQL, specifically the Replication subcomponent, allowing remote authenticated users to impact data availability. The estimated number of potentially affected devices and details about real-world incidents are not provided.
Recommendations For Oracle MySQL versions 5.5.35 and earlier, update to a version later than 5.5.35 to resolve the issue. For Oracle MySQL versions 5.6.15 and earlier, update to a version later than 5.6.15 to resolve the issue. As a temporary workaround, consider restricting access to the Replication subcomponent until a patch is available.

Fix

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1152
ALT-PU-2015-1749
BDU:2014-00343
CESA-2014_0522
CESA-2014_0537
CVE-2014-2438
DSA-2919-1
MGASA-2014-0239
RHSA-2014:0522
RHSA-2014:0536
RHSA-2014:0537
RHSA-2014:0702
RHSA-2014_0536
RHSA-2014_0702
USN-2170-1

Affected Products

Alt Linux
Centos
Mariadb Server
Mysql Server
Red Hat
Suse
Ubuntu