First published: Wed Jan 16 2019(Updated: )
Last updated 24 July 2024
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/mysql-5.7 | ||
redhat/mysql | <5.7.25 | 5.7.25 |
redhat/mysql | <8.0.14 | 8.0.14 |
Oracle MySQL | >=5.7.0<=5.7.24 | |
Oracle MySQL | >=8.0.0<=8.0.13 | |
Canonical Ubuntu Linux | =16.04 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =18.10 | |
Netapp Oncommand Unified Manager Windows | >=7.3 | |
Netapp Oncommand Unified Manager Vsphere | >=9.4 | |
NetApp OnCommand Workflow Automation | ||
Netapp Snapcenter | ||
Netapp Storage Automation Store | ||
Redhat Software Collections | =1.0 | |
Redhat Enterprise Linux | =8.0 | |
Redhat Enterprise Linux Eus | =8.1 | |
Redhat Enterprise Linux Eus | =8.2 | |
Redhat Enterprise Linux Eus | =8.4 | |
Redhat Enterprise Linux Eus | =8.6 | |
Redhat Enterprise Linux Server Aus | =8.2 | |
Redhat Enterprise Linux Server Aus | =8.4 | |
Redhat Enterprise Linux Server Aus | =8.6 | |
Redhat Enterprise Linux Server Tus | =8.2 | |
Redhat Enterprise Linux Server Tus | =8.4 | |
Redhat Enterprise Linux Server Tus | =8.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2019-2420.
The versions of Oracle MySQL affected by this vulnerability are 5.7.24 and prior, and 8.0.13 and prior.
An attacker with high privileges and network access via multiple protocols can easily exploit this vulnerability.
The severity level of this vulnerability is medium with a severity value of 4.9.
You can find more information about this vulnerability at the following references: [Oracle Security Advisory](http://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html), [Red Hat Bugzilla - CVE-2019-2420](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=1666776), [Red Hat Bugzilla - CVE-2019-2420](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=1666778).