CVE-2013-0385: Medium severity mysql vulnerability
Published Jan 17, 2013
·Updated
Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows local users to affect confidentiality and integrity via unknown vectors related to Server Replication.
Affected Software
15 affected components
Oracle MySQL>=5.1.0<=5.1.66
Oracle MySQL>=5.5.0<=5.5.28
MariaDB MariaDB>=5.1.0<5.1.67
MariaDB MariaDB>=5.2.0<5.2.14
MariaDB MariaDB>=5.3.0<5.3.12
MariaDB MariaDB>=5.5.0<5.5.29
MariaDB MariaDB=10.0.0
Canonical Ubuntu Linux=10.04
Canonical Ubuntu Linux=11.10
Canonical Ubuntu Linux=12.04
Canonical Ubuntu Linux=12.10
redhat Enterprise Linux Desktop=6.0
redhat Enterprise Linux Eus=6.3
redhat Enterprise Linux Server=6.0
redhat Enterprise Linux Workstation=6.0
Event History
Jan 17, 2013
CVE Published
via MITRE·01:30 AM
Data Sourced
via MITRE·01:30 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-0385?
CVE-2013-0385 is rated as a medium severity vulnerability due to its potential impact on confidentiality and integrity.
2
How do I fix CVE-2013-0385?
To resolve CVE-2013-0385, it is recommended to upgrade Oracle MySQL to version 5.1.67 or later, or 5.5.29 or later.
3
What software versions are affected by CVE-2013-0385?
CVE-2013-0385 affects Oracle MySQL versions 5.1.66 and earlier, and 5.5.28 and earlier.
4
Who can exploit CVE-2013-0385?
Local users with access to the affected MySQL server can potentially exploit CVE-2013-0385.
5
Is there a workaround for CVE-2013-0385?
Currently, there are no publicly available workarounds for CVE-2013-0385 other than upgrading to a patched version.