VulnerabilityModified
CVE-2015-0391
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
MEDIUM 4.0EPSS 7.20%
Does this matter?
Lower severity and a low EPSS score (7.20%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
- CVSS 2.0
- 4.0 MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
- EPSS
- 7.20% probability · 94th percentile
- CISA KEV
- Not listed
- Affected
- oracle/mysql · redhat/enterprise linux desktop · redhat/enterprise linux eus · redhat/enterprise linux server · redhat/enterprise linux server aus · redhat/enterprise linux server tus · redhat/enterprise linux workstation · suse/linux enterprise desktop · suse/linux enterprise server · suse/linux enterprise software development kit · suse/linux enterprise workstation extension · mariadb/mariadb
- Source
- secalert_us@oracle.com
References
- http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00016.htmlMailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0116.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0117.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0118.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1628.htmlThird Party Advisory
- http://secunia.com/advisories/62728Not Applicable, Third Party Advisory
- http://secunia.com/advisories/62730Not Applicable, Third Party Advisory
- http://secunia.com/advisories/62732Not Applicable, Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/72205Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1031581Broken Link, Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/100186Third Party Advisory, VDB Entry
- https://security.gentoo.org/glsa/201504-05Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00016.htmlMailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0116.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0117.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0118.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1628.htmlThird Party Advisory
- http://secunia.com/advisories/62728Not Applicable, Third Party Advisory
- http://secunia.com/advisories/62730Not Applicable, Third Party Advisory
- http://secunia.com/advisories/62732Not Applicable, Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/72205Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1031581Broken Link, Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/100186Third Party Advisory, VDB Entry
- https://security.gentoo.org/glsa/201504-05Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.