CVE-2013-0375

MEDIUM

Oracle MySQL <5.1.66 - Info Disclosure

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.1.28 and earlier, allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Server Replication.

References (7)

Core 7
Core References
Third Party Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-1703-1
Not Applicable, Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/53372
Third Party Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-201308-06.xml
Third Party Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2013-0219.html
Broken Link, Third Party Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2013:150

Scores

CVSS v3 5.4
EPSS 0.0040
EPSS Percentile 60.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

Details

Status published
Products (10)
canonical/ubuntu_linux 10.04
canonical/ubuntu_linux 11.10
canonical/ubuntu_linux 12.04
canonical/ubuntu_linux 12.10
mariadb/mariadb 5.1.0 - 5.1.67
oracle/mysql 5.1.0 - 5.1.66
redhat/enterprise_linux_desktop 6.0
redhat/enterprise_linux_eus 6.3
redhat/enterprise_linux_server 6.0
redhat/enterprise_linux_workstation 6.0
Published Jan 17, 2013
Tracked Since Feb 18, 2026