VulnerabilityModified
CVE-2015-0374
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Security : Privileges : Foreign Key.
LOW 3.5EPSS 3.13%
Does this matter?
Lower severity and a low EPSS score (3.13%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Security : Privileges : Foreign Key.
- CVSS 2.0
- 3.5 LOWAV:N/AC:M/Au:S/C:P/I:N/A:N
- EPSS
- 3.13% probability · 87th percentile
- CISA KEV
- Not listed
- Affected
- canonical/ubuntu linux · debian/debian linux · fedoraproject/fedora · oracle/solaris · oracle/mysql · suse/linux enterprise desktop · suse/linux enterprise server · suse/linux enterprise software development kit · suse/linux enterprise workstation extension · redhat/enterprise linux desktop · redhat/enterprise linux eus · redhat/enterprise linux server · redhat/enterprise linux server aus · redhat/enterprise linux server tus · redhat/enterprise linux workstation · mariadb/mariadb
- Source
- secalert_us@oracle.com
References
- http://lists.fedoraproject.org/pipermail/package-announce/2015-February/149929.htmlThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00016.htmlMailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0116.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0117.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0118.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1628.htmlThird Party Advisory
- http://secunia.com/advisories/62728Not Applicable, Permissions Required, Third Party Advisory
- http://secunia.com/advisories/62730Not Applicable, Permissions Required, Third Party Advisory
- http://secunia.com/advisories/62732Not Applicable, Permissions Required, Third Party Advisory
- http://www.debian.org/security/2015/dsa-3135Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlVendor Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.htmlVendor Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/72227Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1031581Broken Link, Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-2480-1Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/100191Third Party Advisory, VDB Entry
- https://security.gentoo.org/glsa/201504-05Third Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-February/149929.htmlThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00016.htmlMailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0116.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0117.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0118.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1628.htmlThird Party Advisory
- http://secunia.com/advisories/62728Not Applicable, Permissions Required, Third Party Advisory
- http://secunia.com/advisories/62730Not Applicable, Permissions Required, Third Party Advisory
- http://secunia.com/advisories/62732Not Applicable, Permissions Required, Third Party Advisory
- http://www.debian.org/security/2015/dsa-3135Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlVendor Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.htmlVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.