MEDIUM · 4.0

CVE-2015-0432

Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DDL : Foreign Key.

Vulnerability Description

Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DDL : Foreign Key.

CVSS Score

4.0

MEDIUM

AV:N/AC:L/Au:S/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
OracleSolaris11.3
CanonicalUbuntu Linux12.04
DebianDebian Linux7.0
OracleMysql>= 5.5.0, <= 5.5.40
RedhatEnterprise Linux Desktop5.0
RedhatEnterprise Linux Hpc Node7.0
RedhatEnterprise Linux Server5.0
RedhatEnterprise Linux Workstation5.0
FedoraprojectFedora20
SuseLinux Enterprise Desktop12
SuseLinux Enterprise Server12
SuseLinux Enterprise Software Development Kit12
SuseLinux Enterprise Workstation Extension12
MariadbMariadb>= 5.5.0, < 5.5.41

References

FAQ

What is CVE-2015-0432?

CVE-2015-0432 is a vulnerability with a CVSS score of 4.0 (MEDIUM). Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DDL : Foreign Key.

How severe is CVE-2015-0432?

CVE-2015-0432 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2015-0432?

Check the references section above for vendor advisories and patch information. Affected products include: Oracle Solaris, Canonical Ubuntu Linux, Debian Debian Linux, Oracle Mysql, Redhat Enterprise Linux Desktop.