First published: Wed Jan 16 2019(Updated: )
Last updated 24 July 2024
Credit: secalert_us@oracle.com secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle MySQL | >=5.7.0<=5.7.24 | |
Oracle MySQL | >=8.0.0<=8.0.13 | |
debian/mysql-5.7 | ||
redhat/mysql | <5.7.25 | 5.7.25 |
redhat/mysql | <8.0.14 | 8.0.14 |
>=5.7.0<=5.7.24 | ||
>=8.0.0<=8.0.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-2486 is a vulnerability in the MySQL Server component of Oracle MySQL that allows a high privileged attacker with network access to compromise the security and privileges of the server.
CVE-2019-2486 affects Oracle MySQL versions 5.7.24 and prior, as well as versions 8.0.13 and prior.
CVE-2019-2486 can be easily exploited by a high privileged attacker with network access via multiple protocols.
The severity of CVE-2019-2486 is rated as medium with a severity value of 4.9.
To fix CVE-2019-2486, upgrade to Oracle MySQL version 5.7.25 or 8.0.14, depending on the affected version.