Vulnerability Description
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Protocol.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Mysql | >= 5.1.0, <= 5.1.64 |
| Mariadb | Mariadb | >= 5.1.0, < 5.1.66 |
| Debian | Debian Linux | 6.0 |
| Canonical | Ubuntu Linux | 10.04 |
| Redhat | Enterprise Linux Desktop | 6.0 |
| Redhat | Enterprise Linux Eus | 6.3 |
| Redhat | Enterprise Linux Server | 6.0 |
| Redhat | Enterprise Linux Workstation | 6.0 |
References
- http://rhn.redhat.com/errata/RHSA-2012-1462.htmlThird Party Advisory
- http://secunia.com/advisories/51177Not Applicable
- http://secunia.com/advisories/51309Not Applicable
- http://secunia.com/advisories/53372Not Applicable
- http://security.gentoo.org/glsa/glsa-201308-06.xmlThird Party Advisory
- http://www.debian.org/security/2012/dsa-2581Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:102Broken Link
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150Broken Link
- http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.htmlPatchVendor Advisory
- http://www.ubuntu.com/usn/USN-1621-1Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/79382Third Party AdvisoryVDB Entry
- http://rhn.redhat.com/errata/RHSA-2012-1462.htmlThird Party Advisory
- http://secunia.com/advisories/51177Not Applicable
- http://secunia.com/advisories/51309Not Applicable
- http://secunia.com/advisories/53372Not Applicable
FAQ
What is CVE-2012-3158?
CVE-2012-3158 is a vulnerability with a CVSS score of 7.5 (HIGH). Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via u...
How severe is CVE-2012-3158?
CVE-2012-3158 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-3158?
Check the references section above for vendor advisories and patch information. Affected products include: Oracle Mysql, Mariadb Mariadb, Debian Debian Linux, Canonical Ubuntu Linux, Redhat Enterprise Linux Desktop.