HIGH · 9.0

CVE-2012-3163

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availabi...

Vulnerability Description

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Information Schema.

CVSS Score

9.0

HIGH

AV:N/AC:L/Au:S/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
OracleMysql>= 5.1.0, <= 5.1.64
MariadbMariadb>= 5.1, < 5.1.66
CanonicalUbuntu Linux10.04
DebianDebian Linux6.0
RedhatEnterprise Linux Desktop6.0
RedhatEnterprise Linux Eus6.3
RedhatEnterprise Linux Server6.0
RedhatEnterprise Linux Workstation6.0
F5Big-Ip Access Policy Manager>= 10.1.0, <= 10.2.4
F5Big-Ip Advanced Firewall Manager11.3.0
F5Big-Ip Analytics>= 11.0.0, <= 11.3.0
F5Big-Ip Application Security Manager>= 10.0.0, <= 10.2.4
F5Big-Ip Edge Gateway>= 10.1.0, <= 10.2.4
F5Big-Ip Enterprise Manager>= 2.0.0, <= 2.3.0
F5Big-Ip Global Traffic Manager>= 10.0.0, <= 10.2.4
F5Big-Ip Link Controller>= 10.0.0, <= 10.2.4
F5Big-Ip Local Traffic Manager>= 10.0.0, <= 10.2.4
F5Big-Ip Policy Enforcement Manager11.3.0
F5Big-Ip Protocol Security Module>= 10.0.0, <= 10.2.4
F5Big-Ip Wan Optimization Manager>= 10.0.0, <= 10.2.4

References

FAQ

What is CVE-2012-3163?

CVE-2012-3163 is a vulnerability with a CVSS score of 9.0 (HIGH). Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availabi...

How severe is CVE-2012-3163?

CVE-2012-3163 has been rated HIGH with a CVSS base score of 9.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2012-3163?

Check the references section above for vendor advisories and patch information. Affected products include: Oracle Mysql, Mariadb Mariadb, Canonical Ubuntu Linux, Debian Debian Linux, Redhat Enterprise Linux Desktop.