VulnerabilityModified
CVE-2014-2438
Unspecified vulnerability in Oracle MySQL Server 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Replication.
LOW 3.5EPSS 3.17%
Does this matter?
Lower severity and a low EPSS score (3.17%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in Oracle MySQL Server 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Replication.
- CVSS 2.0
- 3.5 LOWAV:N/AC:M/Au:S/C:N/I:N/A:P
- EPSS
- 3.17% probability · 87th percentile
- CISA KEV
- Not listed
- Affected
- oracle/mysql · mariadb/mariadb · redhat/enterprise linux desktop · redhat/enterprise linux eus · redhat/enterprise linux server · redhat/enterprise linux server aus · redhat/enterprise linux server tus · redhat/enterprise linux workstation
- Source
- secalert_us@oracle.com
References
- http://rhn.redhat.com/errata/RHSA-2014-0522.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0536.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0537.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0702.htmlThird Party Advisory
- http://security.gentoo.org/glsa/glsa-201409-04.xmlThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.htmlVendor Advisory
- http://www.securityfocus.com/bid/66846Third Party Advisory, VDB Entry
- http://rhn.redhat.com/errata/RHSA-2014-0522.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0536.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0537.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-0702.htmlThird Party Advisory
- http://security.gentoo.org/glsa/glsa-201409-04.xmlThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.htmlVendor Advisory
- http://www.securityfocus.com/bid/66846Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.