First published: Tue Apr 15 2014(Updated: )
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to XML.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
MySQL | >=5.5.0<=5.5.35 | |
MySQL | >=5.6.0<=5.6.15 | |
MariaDB | >=5.5.0<5.5.36 | |
MariaDB | >=10.0.0<10.0.9 | |
Red Hat Enterprise Linux Desktop | =5.0 | |
Red Hat Enterprise Linux Desktop | =7.0 | |
Red Hat Enterprise Linux Server EUS | =7.3 | |
Red Hat Enterprise Linux Server EUS | =7.4 | |
Red Hat Enterprise Linux Server EUS | =7.5 | |
Red Hat Enterprise Linux Server EUS | =7.6 | |
Red Hat Enterprise Linux Server EUS | =7.7 | |
Red Hat Enterprise Linux Server | =5.0 | |
Red Hat Enterprise Linux Server | =7.0 | |
Red Hat Enterprise Linux Server | =7.3 | |
Red Hat Enterprise Linux Server | =7.4 | |
Red Hat Enterprise Linux Server | =7.6 | |
Red Hat Enterprise Linux Server | =7.7 | |
Red Hat Enterprise Linux Server | =7.3 | |
Red Hat Enterprise Linux Server | =7.6 | |
Red Hat Enterprise Linux Server | =7.7 | |
Red Hat Enterprise Linux Workstation | =5.0 | |
Red Hat Enterprise Linux Workstation | =7.0 | |
>=5.5.0<=5.5.35 | ||
>=5.6.0<=5.6.15 | ||
>=5.5.0<5.5.36 | ||
>=10.0.0<10.0.9 | ||
=5.0 | ||
=7.0 | ||
=7.3 | ||
=7.4 | ||
=7.5 | ||
=7.6 | ||
=7.7 | ||
=5.0 | ||
=7.0 | ||
=7.3 | ||
=7.4 | ||
=7.6 | ||
=7.7 | ||
=7.3 | ||
=7.6 | ||
=7.7 | ||
=5.0 | ||
=7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0384 is classified as a medium severity vulnerability affecting MySQL and MariaDB.
To fix CVE-2014-0384, upgrade MySQL to version 5.5.36 or later and 5.6.16 or later; for MariaDB, upgrade to version 5.5.36 or later.
CVE-2014-0384 affects MySQL versions 5.5.35 and earlier as well as 5.6.15 and earlier.
CVE-2014-0384 can only be exploited by remote authenticated users, potentially affecting service availability.
Yes, patches for CVE-2014-0384 are available in the newer versions of MySQL and MariaDB.