CVE-2014-0401: Medium severity Oracle MySQL vulnerability
Published Jan 15, 2014
·Updated
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors.
Affected Software
20 affected components
Oracle MySQL>=5.1.0<=5.1.72
Oracle MySQL>=5.5.0<=5.5.34
Oracle MySQL>=5.6.0<=5.6.14
MariaDB MariaDB>=5.5.0<5.5.35
MariaDB MariaDB>=10.0.0<10.0.8
Canonical Ubuntu Linux=10.04
Canonical Ubuntu Linux=12.04
Canonical Ubuntu Linux=12.10
Canonical Ubuntu Linux=13.10
Debian Debian Linux=6.0
Debian Debian Linux=7.0
redhat Enterprise Linux Desktop=5.0
redhat Enterprise Linux Desktop=6.0
redhat Enterprise Linux Eus=6.5
redhat Enterprise Linux Server=5.0
redhat Enterprise Linux Server=6.0
redhat Enterprise Linux Server Aus=6.5
redhat Enterprise Linux Server Tus=6.5
redhat Enterprise Linux Workstation=5.0
redhat Enterprise Linux Workstation=6.0
Event History
Jan 15, 2014
CVE Published
via MITRE·02:50 AM
Data Sourced
via MITRE·02:50 AM
Description
Data Sourced
via NVD·04:08 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-0401?
CVE-2014-0401 is classified as a medium severity vulnerability affecting MySQL servers.
2
Who is affected by CVE-2014-0401?
CVE-2014-0401 affects remote authenticated users of MySQL versions 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier.
3
How do I fix CVE-2014-0401?
To fix CVE-2014-0401, upgrade to MySQL versions later than 5.1.72, 5.5.34, or 5.6.14.
4
What kind of attacks can exploit CVE-2014-0401?
CVE-2014-0401 can be exploited through unknown vectors that affect the availability of the MySQL server.
5
Is there a patch available for CVE-2014-0401?
Yes, patches to address CVE-2014-0401 have been released and can be applied by upgrading the affected MySQL versions.