First published: Wed Jan 21 2015(Updated: )
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier, and 5.6.21 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Server : Security : Encryption.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu | =12.04 | |
Ubuntu | =14.04 | |
Ubuntu | =14.10 | |
Debian | =7.0 | |
Fedora | =20 | |
Red Hat Enterprise Linux | =7.0 | |
Oracle Communications Policy Management | <=9.7.3 | |
Oracle Communications Policy Management | =9.9.1 | |
Oracle Communications Policy Management | =10.4.1 | |
Oracle Communications Policy Management | =12.1.1 | |
Oracle MySQL | >=5.5.0<=5.5.40 | |
Oracle MySQL | >=5.6.0<=5.6.21 | |
Oracle Solaris and Zettabyte File System (ZFS) | =11.3 | |
MariaDB | >=5.5.0<5.5.41 | |
MariaDB | >=10.0.0<10.0.16 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0411 is classified as having a high severity as it can affect the confidentiality, integrity, and availability of systems.
To fix CVE-2015-0411, you should upgrade your MySQL Server to a version that is not affected, such as MySQL 5.5.41 or later, or 5.6.22 or later.
CVE-2015-0411 affects Oracle MySQL Server versions 5.5.40 and earlier, and 5.6.21 and earlier, along with certain Linux distributions like Ubuntu, Debian, and Fedora.
Yes, MariaDB versions up to 5.5.41 and 10.0.16 are vulnerable to CVE-2015-0411.
Exploitation of CVE-2015-0411 can allow remote attackers to potentially manipulate data, disrupt service, or gain unauthorized access.