VulnerabilityModified
CVE-2015-2575
Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Connector/J.
MEDIUM 4.9EPSS 3.56%
Does this matter?
Lower severity and a low EPSS score (3.56%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Connector/J.
- CVSS 2.0
- 4.9 MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:N
- EPSS
- 3.56% probability · 89th percentile
- CISA KEV
- Not listed
- Affected
- debian/debian linux · suse/linux enterprise desktop · suse/linux enterprise server · suse/linux enterprise software development kit · mysql/mysql
- Source
- secalert_us@oracle.com
References
- http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00026.htmlThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2015-05/msg00089.htmlBroken Link
- http://www.debian.org/security/2016/dsa-3621Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.htmlVendor Advisory
- http://www.securityfocus.com/bid/74075Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1032121Third Party Advisory, VDB Entry
- https://security.netapp.com/advisory/ntap-20150417-0003/
- http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00026.htmlThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2015-05/msg00089.htmlBroken Link
- http://www.debian.org/security/2016/dsa-3621Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.htmlVendor Advisory
- http://www.securityfocus.com/bid/74075Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1032121Third Party Advisory, VDB Entry
- https://security.netapp.com/advisory/ntap-20150417-0003/
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.