First published: Wed Jan 20 2021(Updated: )
An unspecified vulnerability in Oracle MySQL Client related to the C API component could allow an unauthenticated attacker to cause a denial of service resulting in a high availability impact using unknown attack vectors.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/mysql | <5.7.33 | 5.7.33 |
redhat/mysql | <8.0.23 | 8.0.23 |
redhat/mariadb-connector-c | <3.0.5 | 3.0.5 |
redhat/mariadb | <5.5.61 | 5.5.61 |
redhat/mariadb | <10.2.15 | 10.2.15 |
redhat/mariadb | <10.1.33 | 10.1.33 |
redhat/mariadb | <10.0.35 | 10.0.35 |
IBM InfoSphere Guardium z/OS | <=10.5 | |
IBM InfoSphere Guardium z/OS | <=10.6 | |
IBM InfoSphere Guardium z/OS | <=11.0 | |
IBM InfoSphere Guardium z/OS | <=11.1 | |
IBM InfoSphere Guardium z/OS | <=11.2 | |
IBM InfoSphere Guardium z/OS | <=11.3 | |
MySQL | >=5.7.0<=5.7.32 | |
MySQL | >=8.0.0<=8.0.22 | |
Fedora | =32 | |
Fedora | =33 | |
NetApp Active IQ Unified Manager for VMware vSphere | ||
netapp active iq unified manager windows | ||
NetApp OnCommand Insight | ||
NetApp OnCommand Workflow Automation | ||
Ariadne CMS | >=5.5.0<5.5.61 | |
Ariadne CMS | >=10.0.0<10.0.35 | |
Ariadne CMS | >=10.1.0<10.1.33 | |
Ariadne CMS | >=10.2.0<10.2.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-2011 has a high severity rating due to its potential to cause denial of service.
To mitigate CVE-2021-2011, upgrade to MySQL 5.7.33 or higher, MySQL 8.0.23 or higher, or relevant patched versions of MariaDB.
CVE-2021-2011 affects Oracle MySQL Client C API and certain versions of MariaDB and IBM Security Guardium.
Yes, CVE-2021-2011 could potentially be exploited by unauthenticated remote attackers.
CVE-2021-2011 could result in a denial of service, significantly impacting the availability of affected systems.