Vulnerability Description
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Mysql | >= 5.5.0, <= 5.5.38 |
| Redhat | Enterprise Linux Desktop | 5.0 |
| Redhat | Enterprise Linux Eus | 7.3 |
| Redhat | Enterprise Linux Server | 5.0 |
| Redhat | Enterprise Linux Server Aus | 7.3 |
| Redhat | Enterprise Linux Server Tus | 7.3 |
| Redhat | Enterprise Linux Workstation | 5.0 |
| Suse | Linux Enterprise Desktop | 12 |
| Suse | Linux Enterprise Server | 12 |
| Suse | Linux Enterprise Software Development Kit | 12 |
| Suse | Linux Enterprise Workstation Extension | 12 |
| Mariadb | Mariadb | >= 5.5.0, < 5.5.39 |
References
- http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00016.htmlMailing ListThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0116.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0117.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0118.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1628.htmlThird Party Advisory
- http://secunia.com/advisories/62728Not ApplicableThird Party Advisory
- http://secunia.com/advisories/62730Not ApplicableThird Party Advisory
- http://secunia.com/advisories/62732Not ApplicableThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.htmlPatchVendor Advisory
- http://www.securityfocus.com/bid/72205Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1031581Broken LinkThird Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/100186Third Party AdvisoryVDB Entry
- https://security.gentoo.org/glsa/201504-05Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00016.htmlMailing ListThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-0116.htmlThird Party Advisory
FAQ
What is CVE-2015-0391?
CVE-2015-0391 is a vulnerability with a CVSS score of 4.0 (MEDIUM). Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
How severe is CVE-2015-0391?
CVE-2015-0391 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-0391?
Check the references section above for vendor advisories and patch information. Affected products include: Oracle Mysql, Redhat Enterprise Linux Desktop, Redhat Enterprise Linux Eus, Redhat Enterprise Linux Server, Redhat Enterprise Linux Server Aus.