MEDIUM · 6.5

CVE-2014-4258

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier and 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availabili...

Vulnerability Description

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier and 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SRINFOSC.

CVSS Score

6.5

MEDIUM

AV:N/AC:L/Au:S/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
OracleMysql>= 5.5.0, <= 5.5.37
VmwareVcenter Server Appliance5.0
OracleSolaris11.3
Opensuse ProjectSuse Linux Enterprise Desktop11.0
Opensuse ProjectSuse Linux Enterprise Server11.0
Opensuse ProjectSuse Linux Enterprise Software Development Kit11.0
DebianDebian Linux7.0
MariadbMariadb>= 5.5.0, < 5.5.38
SuseLinux Enterprise Desktop11
SuseLinux Enterprise Server11
SuseLinux Enterprise Software Development Kit11
SuseLinux Enterprise Workstation Extension12

References

FAQ

What is CVE-2014-4258?

CVE-2014-4258 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier and 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availabili...

How severe is CVE-2014-4258?

CVE-2014-4258 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-4258?

Check the references section above for vendor advisories and patch information. Affected products include: Oracle Mysql, Vmware Vcenter Server Appliance, Oracle Solaris, Opensuse Project Suse Linux Enterprise Desktop, Opensuse Project Suse Linux Enterprise Server.