CVE-2014-6491

Oracle MySQL Server <5.5.40 - Info Disclosure

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to SERVER:SSL:yaSSL, a different vulnerability than CVE-2014-6500.

References (9)

Core 9
Core References
Third Party Advisory x_refsource_confirm
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/70444
Permissions Required, Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/62073
Mailing List, Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00016.html
Third Party Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-201411-02.xml
Permissions Required, Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/61579

Scores

EPSS 0.0226
EPSS Percentile 84.8%

Details

Status published
Products (4)
juniper/junos_space < 15.1
mariadb/mariadb 5.5.0 - 5.5.40
oracle/mysql 5.5.0 - 5.5.39
oracle/solaris 11.3
Published Oct 15, 2014
Tracked Since Feb 18, 2026