First published: Wed Jan 15 2020(Updated: )
Last updated 24 July 2024
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/mysql-5.7 | ||
redhat/mysql | <5.7.29 | 5.7.29 |
redhat/mysql | <8.0.19 | 8.0.19 |
MySQL | >=5.7.0<=5.7.28 | |
MySQL | >=8.0.0<=8.0.18 | |
Ubuntu Linux | =16.04 | |
Ubuntu Linux | =18.04 | |
Ubuntu Linux | =19.10 | |
NetApp Active IQ Unified Manager for VMware vSphere | ||
netapp active iq unified manager windows | ||
NetApp OnCommand Insight | ||
NetApp OnCommand Workflow Automation | ||
netapp snapcenter |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-2584 is classified as a difficult-to-exploit vulnerability that allows high privileged attackers with network access to potentially exploit MySQL Server.
To mitigate CVE-2020-2584, update MySQL to version 5.7.29 or later, or 8.0.19 or later depending on your current version.
CVE-2020-2584 affects MySQL Server versions 5.7.28 and prior, as well as 8.0.18 and prior.
Yes, CVE-2020-2584 can be exploited remotely by attackers with high privileges and network access.
The vulnerability affects the MySQL Server product specifically in the Server: Options component.