CVE-2014-0437: Low severity Oracle MySQL vulnerability
Published Jan 15, 2014
·Updated
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.
Affected Software
20 affected components
Oracle MySQL>=5.1.0<5.1.72
Oracle MySQL>=5.5.0<5.5.34
Oracle MySQL>=5.6.0<5.6.14
Debian Debian Linux=6.0
Debian Debian Linux=7.0
Canonical Ubuntu Linux=10.04
Canonical Ubuntu Linux=12.04
Canonical Ubuntu Linux=12.10
Canonical Ubuntu Linux=13.10
MariaDB MariaDB>=5.5.0<5.5.35
MariaDB MariaDB>=10.0.0<10.0.8
redhat Enterprise Linux Desktop=5.0
redhat Enterprise Linux Desktop=6.0
redhat Enterprise Linux Eus=6.5
redhat Enterprise Linux Server=5.0
redhat Enterprise Linux Server=6.0
redhat Enterprise Linux Server Aus=6.5
redhat Enterprise Linux Server Tus=6.5
redhat Enterprise Linux Workstation=5.0
redhat Enterprise Linux Workstation=6.0
Event History
Jan 15, 2014
CVE Published
via MITRE·02:50 AM
Data Sourced
via MITRE·02:50 AM
Description
Data Sourced
via NVD·04:08 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-0437?
CVE-2014-0437 has a severity rating that indicates it can affect the availability of MySQL Server.
2
How do I fix CVE-2014-0437?
To fix CVE-2014-0437, upgrade to a MySQL Server version later than 5.1.72, 5.5.34, or 5.6.14.
3
Which versions of MySQL are affected by CVE-2014-0437?
CVE-2014-0437 affects MySQL Server versions 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier.
4
Can CVE-2014-0437 be exploited remotely?
Yes, CVE-2014-0437 can be exploited by remote authenticated users to impact the availability of the MySQL Server.
5
What are the potential impacts of CVE-2014-0437?
The potential impacts of CVE-2014-0437 include degraded performance and availability of the MySQL Server.