VulnerabilityModified
CVE-2013-3809
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier and 5.6.11 and earlier allows remote authenticated users to affect integrity via unknown vectors related to Audit Log.
MEDIUM 4.0EPSS 2.65%
Does this matter?
Lower severity and a low EPSS score (2.65%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier and 5.6.11 and earlier allows remote authenticated users to affect integrity via unknown vectors related to Audit Log.
- CVSS 2.0
- 4.0 MEDIUMAV:N/AC:L/Au:S/C:N/I:P/A:N
- EPSS
- 2.65% probability · 85th percentile
- CISA KEV
- Not listed
- Affected
- oracle/mysql · oracle/solaris · opensuse/opensuse · suse/linux enterprise desktop · suse/linux enterprise server · suse/linux enterprise software development kit · canonical/ubuntu linux · mariadb/mariadb
- Source
- secalert_us@oracle.com
References
- http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00022.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2013-10/msg00001.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-updates/2013-08/msg00024.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-updates/2013-09/msg00008.htmlMailing List, Third Party Advisory
- http://osvdb.org/95322Broken Link, Permissions Required, Third Party Advisory
- http://secunia.com/advisories/54300Permissions Required, Third Party Advisory
- http://www.debian.org/security/2013/dsa-2818Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.htmlVendor Advisory
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.htmlVendor Advisory
- http://www.ubuntu.com/usn/USN-1909-1Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/85709Third Party Advisory, VDB Entry
- http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00022.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2013-10/msg00001.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-updates/2013-08/msg00024.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-updates/2013-09/msg00008.htmlMailing List, Third Party Advisory
- http://osvdb.org/95322Broken Link, Permissions Required, Third Party Advisory
- http://secunia.com/advisories/54300Permissions Required, Third Party Advisory
- http://www.debian.org/security/2013/dsa-2818Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.htmlVendor Advisory
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.htmlVendor Advisory
- http://www.ubuntu.com/usn/USN-1909-1Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/85709Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.