First published: Wed Apr 15 2020(Updated: )
Last updated 24 July 2024
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/mysql | <8.0.20 | 8.0.20 |
debian/mysql-5.7 | ||
Oracle MySQL | >=5.6.0<5.6.47 | |
Oracle MySQL | >=5.7.0<5.7.29 | |
Oracle MySQL | >=8.0.0<8.0.19 | |
Fedoraproject Fedora | =30 | |
Fedoraproject Fedora | =31 | |
Fedoraproject Fedora | =32 | |
Canonical Ubuntu Linux | =16.04 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =19.10 | |
Canonical Ubuntu Linux | =20.04 | |
Netapp Active Iq Unified Manager Windows | >=7.3 | |
Netapp Active Iq Unified Manager Vmware Vsphere | >=9.5 | |
NetApp OnCommand Insight | ||
NetApp OnCommand Workflow Automation | ||
Netapp Snapcenter |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-2901 is medium with a severity value of 4.9.
The affected software for CVE-2020-2901 includes Oracle MySQL Server versions 8.0.19 and prior, mysql-5.7 package in Debian, and mysql package in Red Hat and Ubuntu.
An attacker with network access via multiple protocols can exploit CVE-2020-2901 to compromise MySQL Server.
You can find more information about CVE-2020-2901 on the Oracle security alerts, NetApp advisory, and Ubuntu security notice websites.
There is no specific fix available for CVE-2020-2901, but you should update to MySQL Server version 8.0.20 or later to mitigate the vulnerability.