First published: Wed Apr 16 2014(Updated: )
Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to RBR.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
MySQL | >=5.5.0<=5.5.36 | |
MySQL | >=5.6.0<=5.6.16 | |
Oracle Solaris and Zettabyte File System (ZFS) | =11.3 | |
MariaDB | >=5.5.0<5.5.37 | |
MariaDB | >=10.0.0<10.0.11 | |
Red Hat Enterprise Linux Desktop | =5.0 | |
Red Hat Enterprise Linux Desktop | =7.0 | |
Red Hat Enterprise Linux Server EUS | =7.3 | |
Red Hat Enterprise Linux Server EUS | =7.4 | |
Red Hat Enterprise Linux Server EUS | =7.5 | |
Red Hat Enterprise Linux Server EUS | =7.6 | |
Red Hat Enterprise Linux Server EUS | =7.7 | |
Red Hat Enterprise Linux Server | =5.0 | |
Red Hat Enterprise Linux Server | =7.0 | |
Red Hat Enterprise Linux Server | =7.3 | |
Red Hat Enterprise Linux Server | =7.4 | |
Red Hat Enterprise Linux Server | =7.6 | |
Red Hat Enterprise Linux Server | =7.7 | |
Red Hat Enterprise Linux Server | =7.3 | |
Red Hat Enterprise Linux Server | =7.6 | |
Red Hat Enterprise Linux Server | =7.7 | |
Red Hat Enterprise Linux Workstation | =5.0 | |
Red Hat Enterprise Linux Workstation | =7.0 | |
>=5.5.0<=5.5.36 | ||
>=5.6.0<=5.6.16 | ||
=11.3 | ||
>=5.5.0<5.5.37 | ||
>=10.0.0<10.0.11 | ||
=5.0 | ||
=7.0 | ||
=7.3 | ||
=7.4 | ||
=7.5 | ||
=7.6 | ||
=7.7 | ||
=5.0 | ||
=7.0 | ||
=7.3 | ||
=7.4 | ||
=7.6 | ||
=7.7 | ||
=7.3 | ||
=7.6 | ||
=7.7 | ||
=5.0 | ||
=7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-2436 has a severity rating that indicates it allows remote authenticated users to potentially compromise confidentiality, integrity, and availability of affected systems.
To fix CVE-2014-2436, upgrade to MySQL Server versions 5.5.37 or later or 5.6.17 or later, and ensure that all configurations are securely managed.
CVE-2014-2436 affects MySQL Server versions 5.5.36 and earlier, and 5.6.16 and earlier.
Yes, CVE-2014-2436 can affect MariaDB versions prior to 5.5.37 and 10.0.11.
Yes, several versions of Red Hat Enterprise Linux are vulnerable to CVE-2014-2436, including version 5.0 and versions from 7.0 to 7.7.