Back

MEDIUM

mysql: Server: Security: Encryption unspecified vulnerability (CPU Oct 2019)

Published Oct 16, 2019

Description

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are affected are 5.6.45 and prior and 5.7.27 and prior. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).

Affected products

Remediation

No remediation recorded yet.

Weaknesses (0)

No CWE recorded.

References (8)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner oracle
Published Oct 16, 2019
Updated Oct 15, 2024
Reserved Dec 14, 2018

CISA Vulnrichment

Updated Oct 15, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

Severity Moderate
Public date Oct 15, 2019
Bugzilla 1764677

ENISA EUVD

Assigner oracle
Published Oct 16, 2019
Updated Oct 15, 2024

GitHub

No data