MEDIUM
mysql: unspecified DoS related to Server Privileges (CPU July 2013)
Published Jul 17, 2013
4.0
MEDIUMCVSS 2.0
EPSS 1.66%
Description
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.6.11 and earlier allows remote attackers to affect confidentiality and integrity via unknown vectors related to Server Privileges.
Affected products
No data.
OR
- ≤ 5.6.11
- 5.6.0
- 5.6.1
- 5.6.2
- 5.6.3
- 5.6.4
- 5.6.5
- 5.6.6
- 5.6.7
- 5.6.8
- 5.6.9
- 5.6.10
No data.
Red Hat Enterprise Linux 5
mysql
Not affected
Red Hat Enterprise Linux 6
mysql
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | mysql | Not affected | n/a |
| Red Hat Enterprise Linux 6 | mysql | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
Not vulnerable. This issue did not affect the versions of mysql as shipped with Red Hat Enterprise Linux 5 and 6.
Weaknesses (0)
No CWE recorded.
References (13)
- http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00022.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2013-10/msg00001.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-updates/2013-08/msg00024.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-updates/2013-09/msg00008.html vendor-advisoryx_refsource_SUSE
- http://osvdb.org/95334 vdb-entryx_refsource_OSVDB
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html x_refsource_CONFIRMVendor Advisory
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html#AppendixMSQL
- https://access.redhat.com/security/cve/CVE-2013-3807 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=985718 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2013-3740 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/85721 vdb-entryx_refsource_XF
- https://nvd.nist.gov/vuln/detail/CVE-2013-3807
- https://www.cve.org/CVERecord?id=CVE-2013-3807
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner oracle
Published Jul 17, 2013
Updated Aug 6, 2024
Reserved Jun 3, 2013
Link CVE-2013-3807
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2013-3740 Assigner oracle
Published Jul 17, 2013
Updated Aug 6, 2024
Exploited since n/a
Link EUVD-2013-3740