CVE-2014-2431: Low severity Oracle Solaris vulnerability
Published Apr 16, 2014
·Updated
Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote attackers to affect availability via unknown vectors related to Options.
Affected Software
23 affected components
Oracle Solaris=11.3
Oracle MySQL>=5.5.0<=5.5.36
Oracle MySQL>=5.6.0<=5.6.16
redhat Enterprise Linux Desktop=5.0
redhat Enterprise Linux Desktop=7.0
redhat Enterprise Linux Eus=7.3
redhat Enterprise Linux Eus=7.4
redhat Enterprise Linux Eus=7.5
redhat Enterprise Linux Eus=7.6
redhat Enterprise Linux Eus=7.7
redhat Enterprise Linux Server=5.0
redhat Enterprise Linux Server=7.0
redhat Enterprise Linux Server Aus=7.3
redhat Enterprise Linux Server Aus=7.4
redhat Enterprise Linux Server Aus=7.6
redhat Enterprise Linux Server Aus=7.7
redhat Enterprise Linux Server Tus=7.3
redhat Enterprise Linux Server Tus=7.6
redhat Enterprise Linux Server Tus=7.7
redhat Enterprise Linux Workstation=5.0
redhat Enterprise Linux Workstation=7.0
MariaDB MariaDB>=5.5.0<5.5.37
MariaDB MariaDB>=10.0.0<10.0.11
Event History
Apr 16, 2014
CVE Published
via MITRE·02:05 AM
Data Sourced
via MITRE·02:05 AM
Description
Data Sourced
via NVD·02:55 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-2431?
CVE-2014-2431 is rated as a high severity vulnerability due to its potential impact on availability.
2
How do I fix CVE-2014-2431?
To mitigate CVE-2014-2431, users should upgrade to MySQL versions 5.5.37 or later and 5.6.17 or later.
3
What software is affected by CVE-2014-2431?
CVE-2014-2431 affects Oracle MySQL Server versions 5.5.36 and earlier, as well as 5.6.16 and earlier, among other systems.
4
What are the potential impacts of CVE-2014-2431?
CVE-2014-2431 could allow remote attackers to disrupt the availability of the affected Oracle MySQL Server.
5
Is there a workaround for CVE-2014-2431?
Currently, the best practice is to apply the recommended updates, as no effective workarounds have been specified for CVE-2014-2431.