First published: Wed Oct 21 2015(Updated: )
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier, when running on Windows, allows remote authenticated users to affect availability via unknown vectors related to Server : Query Cache.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
MySQL | >=5.5.0<=5.5.45 | |
MySQL | >=5.6.0<=5.6.26 | |
Oracle Solaris and Zettabyte File System (ZFS) | =11.3 | |
SUSE Linux | =42.1 | |
openSUSE | =13.1 | |
openSUSE | =13.2 | |
MariaDB | >=5.5.0<5.5.46 | |
MariaDB | >=10.0.0<10.0.22 | |
MariaDB | >=10.1.0<10.1.8 | |
Red Hat Fedora | =23 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-4807 has been classified as a moderate severity vulnerability affecting Oracle MySQL Server and related systems.
To remediate CVE-2015-4807, users should upgrade to MySQL Server versions 5.5.46 or 5.6.27 or later.
CVE-2015-4807 affects Oracle MySQL Server versions 5.5.45 and earlier, 5.6.26 and earlier when running on Windows.
Yes, CVE-2015-4807 allows remote authenticated users to impact the availability of the affected MySQL Server.
The specific vectors of attack for CVE-2015-4807 remain unspecified, but they relate to the server's query cache functionality.