MEDIUM · 4.3

CVE-2014-6496

Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulnera...

Vulnerability Description

Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulnerability than CVE-2014-6494.

CVSS Score

4.3

MEDIUM

AV:N/AC:M/Au:N/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
JuniperJunos Space<= 15.1
OracleSolaris11.3
MariadbMariadb>= 5.5.0, < 5.5.40
OracleMysql>= 5.5.0, <= 5.5.39
SuseLinux Enterprise Desktop12
SuseLinux Enterprise Server12
SuseLinux Enterprise Software Development Kit12
SuseLinux Enterprise Workstation Extension12

References

FAQ

What is CVE-2014-6496?

CVE-2014-6496 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulnera...

How severe is CVE-2014-6496?

CVE-2014-6496 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-6496?

Check the references section above for vendor advisories and patch information. Affected products include: Juniper Junos Space, Oracle Solaris, Mariadb Mariadb, Oracle Mysql, Suse Linux Enterprise Desktop.