CVE-2012-3156: Low severity mysql vulnerability
Published Oct 16, 2012
·Updated
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.25 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server.
Affected Software
25 affected components
ORACLE MySQL<=5.5.25
ORACLE MySQL=5.5.0
ORACLE MySQL=5.5.1
ORACLE MySQL=5.5.2
ORACLE MySQL=5.5.3
ORACLE MySQL=5.5.4
ORACLE MySQL=5.5.5
ORACLE MySQL=5.5.6
ORACLE MySQL=5.5.7
ORACLE MySQL=5.5.9
ORACLE MySQL=5.5.10
ORACLE MySQL=5.5.11
ORACLE MySQL=5.5.12
ORACLE MySQL=5.5.13
ORACLE MySQL=5.5.14
ORACLE MySQL=5.5.15
ORACLE MySQL=5.5.16
ORACLE MySQL=5.5.17
ORACLE MySQL=5.5.18
ORACLE MySQL=5.5.19
ORACLE MySQL=5.5.20
ORACLE MySQL=5.5.21
ORACLE MySQL=5.5.22
ORACLE MySQL=5.5.23
ORACLE MySQL=5.5.24
Remediation
Event History
Oct 16, 2012
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-3156?
The severity of CVE-2012-3156 is classified as medium, due to its potential impact on the availability of the MySQL Server.
2
How do I fix CVE-2012-3156?
To fix CVE-2012-3156, upgrade to MySQL version 5.5.26 or later, where the vulnerability is patched.
3
Who is affected by CVE-2012-3156?
CVE-2012-3156 affects remote authenticated users utilizing Oracle MySQL versions 5.5.25 and earlier.
4
What types of attacks can exploit CVE-2012-3156?
CVE-2012-3156 can potentially be exploited through unspecified vectors that affect the server's availability.
5
Is CVE-2012-3156 targeted by specific malware?
There is no specific evidence that CVE-2012-3156 has been targeted by malware; however, it poses a risk that should be addressed.