CVE-2015-2620: Medium severity ubuntu vulnerability
Published Jul 16, 2015
·Updated
Unspecified vulnerability in Oracle MySQL Server 5.5.43 and earlier and 5.6.23 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Security : Privileges.
Affected Software
11 affected components
Canonical Ubuntu Linux=12.04
Canonical Ubuntu Linux=14.04
Canonical Ubuntu Linux=14.10
Canonical Ubuntu Linux=15.04
Debian Debian Linux=8.0
Oracle Solaris=11.3
Juniper Junos Space<=15.1
Oracle MySQL>=5.5.0<=5.5.43
Oracle MySQL>=5.6.0<=5.6.23
MariaDB MariaDB>=5.5.0<5.5.44
MariaDB MariaDB>=10.0.0<10.0.20
Remediation
Event History
Jul 16, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2620?
The severity of CVE-2015-2620 is considered to be moderate due to its potential impact on confidentiality.
2
How do I fix CVE-2015-2620?
To fix CVE-2015-2620, you should upgrade your MySQL server to a version later than 5.5.43 or 5.6.23.
3
Who is affected by CVE-2015-2620?
CVE-2015-2620 affects users of Oracle MySQL Server versions 5.5.43 and earlier and 5.6.23 and earlier.
4
What versions of Ubuntu are impacted by CVE-2015-2620?
CVE-2015-2620 impacts Ubuntu versions 12.04, 14.04, and 14.10.
5
What kind of attacks does CVE-2015-2620 allow?
CVE-2015-2620 allows remote authenticated users to affect the confidentiality of the system through unspecified vectors.