Vulnerability Description
Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows local users to affect confidentiality and integrity via unknown vectors related to Server Replication.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Mysql | >= 5.1.0, <= 5.1.66 |
| Mariadb | Mariadb | >= 5.1.0, < 5.1.67 |
| Canonical | Ubuntu Linux | 10.04 |
| Redhat | Enterprise Linux Desktop | 6.0 |
| Redhat | Enterprise Linux Eus | 6.3 |
| Redhat | Enterprise Linux Server | 6.0 |
| Redhat | Enterprise Linux Workstation | 6.0 |
References
- http://rhn.redhat.com/errata/RHSA-2013-0219.htmlThird Party Advisory
- http://secunia.com/advisories/53372Not Applicable
- http://security.gentoo.org/glsa/glsa-201308-06.xmlThird Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150Broken Link
- http://www.oracle.com/technetwork/topics/security/cpujan2013-1515902.htmlVendor Advisory
- http://www.ubuntu.com/usn/USN-1703-1Third Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2013-0219.htmlThird Party Advisory
- http://secunia.com/advisories/53372Not Applicable
- http://security.gentoo.org/glsa/glsa-201308-06.xmlThird Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150Broken Link
- http://www.oracle.com/technetwork/topics/security/cpujan2013-1515902.htmlVendor Advisory
- http://www.ubuntu.com/usn/USN-1703-1Third Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Third Party Advisory
FAQ
What is CVE-2013-0385?
CVE-2013-0385 is a vulnerability with a CVSS score of 6.6 (MEDIUM). Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows local users to affect confidentiality and integrity via unknown vectors related to ...
How severe is CVE-2013-0385?
CVE-2013-0385 has been rated MEDIUM with a CVSS base score of 6.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-0385?
Check the references section above for vendor advisories and patch information. Affected products include: Oracle Mysql, Mariadb Mariadb, Canonical Ubuntu Linux, Redhat Enterprise Linux Desktop, Redhat Enterprise Linux Eus.