PT-2014-1189 · Oracle+2 · Mysql Server+2
Published
2014-01-15
·
Updated
2018-05-03
·
CVE-2014-0433
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
MySQL Server versions prior to 5.6.13
Description
The issue affects the availability of data in the MySQL Server component of Oracle MySQL. It is related to Thread Pooling and can be exploited by remote attackers, potentially allowing them to impact data availability. The estimated number of potentially affected devices and details about real-world incidents are not specified.
Recommendations
For versions prior to 5.6.13, update to a version that contains a fix for this issue to prevent exploitation.
As a temporary workaround, consider restricting access to the Thread Pooling component until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Mysql Server
Suse