CVE-2013-2391: Low severity Oracle MySQL vulnerability
Published Apr 17, 2013
·Updated
Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier allows local users to affect confidentiality and integrity via unknown vectors related to Server Install.
Affected Software
10 affected components
Oracle MySQL>=5.1.0<=5.1.71
Oracle MySQL>=5.5.0<=5.5.33
Oracle MySQL>=5.6.0<=5.6.13
redhat Enterprise Linux Desktop=6.0
redhat Enterprise Linux Eus=6.4
redhat Enterprise Linux Server=6.0
redhat Enterprise Linux Server Aus=6.4
redhat Enterprise Linux Workstation=6.0
MariaDB MariaDB>=5.5.0<5.5.31
MariaDB MariaDB>=10.0.0<10.0.3
Event History
Apr 17, 2013
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-2391?
CVE-2013-2391 is classified as a medium severity vulnerability that can affect the confidentiality and integrity of the system.
2
How do I fix CVE-2013-2391?
To fix CVE-2013-2391, upgrade MySQL to versions beyond 5.1.68, 5.5.30, or 5.6.10.
3
Which versions of MySQL are affected by CVE-2013-2391?
CVE-2013-2391 affects MySQL versions 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier.
4
What could be the consequences of not addressing CVE-2013-2391?
Not addressing CVE-2013-2391 may lead to unauthorized access and manipulation of data, compromising system confidentiality and integrity.
5
Are MariaDB versions affected by CVE-2013-2391?
Yes, versions of MariaDB before 5.5.31 and 10.0.3 may also be affected by CVE-2013-2391.