PT-2014-1189 · Oracle+2 · Mysql Server+2

Published

2014-01-15

·

Updated

2018-05-03

·

CVE-2014-0433

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions MySQL Server versions prior to 5.6.13
Description The issue affects the availability of data in the MySQL Server component of Oracle MySQL. It is related to Thread Pooling and can be exploited by remote attackers, potentially allowing them to impact data availability. The estimated number of potentially affected devices and details about real-world incidents are not specified.
Recommendations For versions prior to 5.6.13, update to a version that contains a fix for this issue to prevent exploitation. As a temporary workaround, consider restricting access to the Thread Pooling component until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-1647
BDU:2014-00344
CVE-2014-0433

Affected Products

Alt Linux
Mysql Server
Suse