Oracle MySQL Server Remote Vulnerabilities (CVE-2014-4260)
Release date:
Updated on:
Affected Systems:
Oracle MySQL Server <= 5.6.17
Oracle MySQL Server <= 5.5.37
Description:
--------------------------------------------------------------------------------
Bugtraq id: 68573
CVE (CAN) ID: CVE-2014-4260
Oracle MySQL Server is a lightweight relational database system.
Oracle MySQL Server has a remote security vulnerability in the implementation of the MySQL Server component, which can be exploited through the MySQL Protocol, authenticated remote attackers can exploit this vulnerability to affect the integrity and availability of affected components. Versions affected by this vulnerability include 5.5.37 and earlier versions, 5.6.17, and earlier versions.
<* Source: Oracle
Link: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Oracle
------
Oracle has released a Security Bulletin (cpujul2014-1972956) and patches for this:
Cpujul2014-1972956: Oracle Critical Patch Update Advisory-July 2014
Link: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
This article permanently updates the link address: