First published: Wed Jan 21 2015(Updated: )
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Security : Privileges : Foreign Key.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu | =12.04 | |
Ubuntu | =14.04 | |
Ubuntu | =14.10 | |
Debian | =7.0 | |
Fedora | =20 | |
Oracle Solaris SPARC | =11.3 | |
MySQL | >=5.5.0<=5.5.40 | |
MySQL | >=5.6.0<=5.6.21 | |
SUSE Linux Enterprise Desktop with Beagle | =12 | |
SUSE Linux Enterprise Server | =12 | |
SUSE Linux Enterprise Software Development Kit | =12 | |
SUSE Linux Enterprise Workstation Extension | =12 | |
redhat enterprise Linux desktop | =5.0 | |
redhat enterprise Linux desktop | =7.0 | |
redhat enterprise Linux eus | =7.3 | |
redhat enterprise Linux eus | =7.4 | |
redhat enterprise Linux eus | =7.5 | |
redhat enterprise Linux eus | =7.6 | |
redhat enterprise Linux eus | =7.7 | |
redhat enterprise Linux server | =5.0 | |
redhat enterprise Linux server | =7.0 | |
redhat enterprise Linux server aus | =7.3 | |
redhat enterprise Linux server aus | =7.4 | |
redhat enterprise Linux server aus | =7.6 | |
redhat enterprise Linux server aus | =7.7 | |
redhat enterprise Linux server tus | =7.3 | |
redhat enterprise Linux server tus | =7.6 | |
redhat enterprise Linux server tus | =7.7 | |
redhat enterprise Linux workstation | =5.0 | |
redhat enterprise Linux workstation | =7.0 | |
Ariadne CMS | >=5.5.0<5.5.41 | |
Ariadne CMS | >=10.0.0<10.0.16 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0374 has been categorized as a vulnerability that impacts confidentiality due to privilege issues.
To mitigate CVE-2015-0374, upgrade your Oracle MySQL Server to a version later than 5.6.21 or 5.5.40.
CVE-2015-0374 affects Oracle MySQL Server versions 5.5.40 and earlier, and 5.6.21 and earlier, on multiple operating systems.
CVE-2015-0374 can lead to unauthorized access and potential leakage of sensitive information for authenticated users.
There are no known workarounds for CVE-2015-0374 other than applying the latest patches or upgrades.