CVE-2014-4243: Low severity Oracle Solaris vulnerability
Published Jul 17, 2014
·Updated
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to ENFED.
Affected Software
9 affected components
Oracle Solaris=11.3
Oracle MySQL>=5.5.0<=5.5.35
Oracle MySQL>=5.6.0<=5.6.15
MariaDB MariaDB>=5.5.0<5.5.36
MariaDB MariaDB>=10.0.0<10.0.9
SUSE Linux Enterprise Desktop=11-sp3
SUSE Linux Enterprise Server=11-sp3
SUSE Linux Enterprise Server Vmware=11-sp3
SUSE Linux Enterprise Software Development Kit=11-sp3
Event History
Jul 17, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-4243?
CVE-2014-4243 is classified as a medium severity vulnerability affecting MySQL servers.
2
How do I fix CVE-2014-4243?
To fix CVE-2014-4243, upgrade MySQL to version 5.5.36 or later, or 5.6.16 or later.
3
What versions of MySQL are affected by CVE-2014-4243?
MySQL versions 5.5.35 and earlier as well as 5.6.15 and earlier are affected by CVE-2014-4243.
4
Can CVE-2014-4243 be exploited by unauthenticated users?
No, CVE-2014-4243 can only be exploited by remote authenticated users.
5
What is the impact of CVE-2014-4243 on MySQL availability?
CVE-2014-4243 can affect the availability of the MySQL server due to unspecified vectors.