PT-2014-1193 · Oracle+6 · Oracle Mysql Server+6

Published

2014-04-15

·

Updated

2022-07-19

·

CVE-2014-2436

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Oracle MySQL Server versions 5.5.36 and earlier Oracle MySQL Server versions 5.6.16 and earlier
Description The issue affects the confidentiality, integrity, and availability of data. It is related to the RBR component in Oracle MySQL Server and can be exploited by remote authenticated users.
Recommendations For Oracle MySQL Server versions 5.5.36 and earlier, update to a version later than 5.5.36 to resolve the issue. For Oracle MySQL Server versions 5.6.16 and earlier, update to a version later than 5.6.16 to resolve the issue. As a temporary workaround, consider restricting access to the RBR component until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1152
ALT-PU-2015-1749
BDU:2014-00350
CESA-2014_0522
CESA-2014_0537
CVE-2014-2436
DSA-2919-1
MGASA-2014-0239
RHSA-2014:0522
RHSA-2014:0536
RHSA-2014:0537
RHSA-2014:0702
RHSA-2014_0536
RHSA-2014_0702
USN-2170-1

Affected Products

Alt Linux
Centos
Mariadb Server
Oracle Mysql Server
Red Hat
Suse
Ubuntu