First published: Tue Apr 15 2014(Updated: )
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to XML.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
MySQL | >=5.5.0<=5.5.35 | |
MySQL | >=5.6.0<=5.6.15 | |
Mariadb Mariadb | >=5.5.0<5.5.36 | |
Mariadb Mariadb | >=10.0.0<10.0.9 | |
redhat enterprise Linux desktop | =5.0 | |
redhat enterprise Linux desktop | =7.0 | |
redhat enterprise Linux eus | =7.3 | |
redhat enterprise Linux eus | =7.4 | |
redhat enterprise Linux eus | =7.5 | |
redhat enterprise Linux eus | =7.6 | |
redhat enterprise Linux eus | =7.7 | |
redhat enterprise Linux server | =5.0 | |
redhat enterprise Linux server | =7.0 | |
redhat enterprise Linux server aus | =7.3 | |
redhat enterprise Linux server aus | =7.4 | |
redhat enterprise Linux server aus | =7.6 | |
redhat enterprise Linux server aus | =7.7 | |
redhat enterprise Linux server tus | =7.3 | |
redhat enterprise Linux server tus | =7.6 | |
redhat enterprise Linux server tus | =7.7 | |
redhat enterprise Linux workstation | =5.0 | |
redhat enterprise Linux workstation | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0384 is classified as a medium severity vulnerability affecting MySQL and MariaDB.
To fix CVE-2014-0384, upgrade MySQL to version 5.5.36 or later and 5.6.16 or later; for MariaDB, upgrade to version 5.5.36 or later.
CVE-2014-0384 affects MySQL versions 5.5.35 and earlier as well as 5.6.15 and earlier.
CVE-2014-0384 can only be exploited by remote authenticated users, potentially affecting service availability.
Yes, patches for CVE-2014-0384 are available in the newer versions of MySQL and MariaDB.