VulnerabilityModified
CVE-2013-3839
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.70 and earlier, 5.5.32 and earlier, and 5.6.12 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.
MEDIUM 4.0EPSS 3.09%
Does this matter?
Lower severity and a low EPSS score (3.09%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.70 and earlier, 5.5.32 and earlier, and 5.6.12 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.
- CVSS 2.0
- 4.0 MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
- EPSS
- 3.09% probability · 87th percentile
- CISA KEV
- Not listed
- Affected
- oracle/mysql · mariadb/mariadb · canonical/ubuntu linux · redhat/enterprise linux desktop · redhat/enterprise linux server · redhat/enterprise linux workstation · debian/debian linux
- Source
- secalert_us@oracle.com
References
- http://rhn.redhat.com/errata/RHSA-2014-0173.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0186.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0189.htmlThird Party Advisory
- http://secunia.com/advisories/55291Not Applicable
- http://security.gentoo.org/glsa/glsa-201409-04.xmlThird Party Advisory
- http://www.debian.org/security/2013/dsa-2780Third Party Advisory
- http://www.debian.org/security/2013/dsa-2818Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:250Broken Link
- http://www.oracle.com/technetwork/topics/security/cpuoct2013-1899837.htmlVendor Advisory
- http://www.securityfocus.com/bid/63109Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1029184Broken Link, Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-2006-1Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0173.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0186.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0189.htmlThird Party Advisory
- http://secunia.com/advisories/55291Not Applicable
- http://security.gentoo.org/glsa/glsa-201409-04.xmlThird Party Advisory
- http://www.debian.org/security/2013/dsa-2780Third Party Advisory
- http://www.debian.org/security/2013/dsa-2818Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:250Broken Link
- http://www.oracle.com/technetwork/topics/security/cpuoct2013-1899837.htmlVendor Advisory
- http://www.securityfocus.com/bid/63109Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1029184Broken Link, Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-2006-1Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.