First published: Wed Jan 16 2019(Updated: )
Last updated 24 July 2024
Credit: secalert_us@oracle.com secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/mysql-5.7 | ||
redhat/mysql | <5.7.25 | 5.7.25 |
redhat/mysql | <8.0.14 | 8.0.14 |
MySQL | >=5.7.0<=5.7.24 | |
MySQL | >=8.0.0<=8.0.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-2528 is a vulnerability in the MySQL Server component of Oracle MySQL that allows a high privileged attacker with network access to compromise MySQL Server.
Versions 5.7.24 and prior, and 8.0.13 and prior of Oracle MySQL are affected by CVE-2019-2528.
A high privileged attacker can exploit CVE-2019-2528 by gaining network access via multiple protocols and compromising MySQL Server.
CVE-2019-2528 has a severity rating of 4.9 (medium).
Yes, patches are available for Oracle MySQL versions 5.7.25 and 8.0.14, as well as for some specific distributions such as Red Hat and Ubuntu.