VulnerabilityModified
CVE-2015-4866
Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : InnoDB.
MEDIUM 4.0EPSS 2.39%
Does this matter?
Lower severity and a low EPSS score (2.39%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : InnoDB.
- CVSS 2.0
- 4.0 MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
- EPSS
- 2.39% probability · 83th percentile
- CISA KEV
- Not listed
- Affected
- oracle/mysql · mariadb/mariadb · canonical/ubuntu linux
- Source
- secalert_us@oracle.com
References
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/77132Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1033894Broken Link, Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-2781-1Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/77132Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1033894Broken Link, Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-2781-1Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.