CVE-2013-0375
published 2013-01-17CVE-2013-0375: Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.1.28 and earlier, allows remote authenticated users to affect…
PriorityP428medium5.4CVSS 3.1
AVNACLPRLUINSUCLILAN
EPSS
1.92%
77.6th percentile
Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.1.28 and earlier, allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Server Replication.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| mariadb | mariadb | >= 5.1.0 < 5.1.67 | 5.1.67 |
| mariadb | mariadb | >= 5.2.0 < 5.2.14 | 5.2.14 |
| mariadb | mariadb | >= 5.3.0 < 5.3.12 | 5.3.12 |
| oracle | mysql | 5.1.0 – 5.1.66 | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_workstation | — | — |
CVSS provenance
nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
nvdv2.05.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:N
vendor_redhat5.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)
vendor_redhat·2014-01-14·CVSS 4.0
CVE-2013-5898 [MEDIUM] JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)
JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)
Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-0375 and CVE-2014-0403.
Package: java-1.7.0-oracle (Red Hat Enterprise Linux 7) - Not affected
Red Hat
JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)
vendor_redhat·2014-01-14·CVSS 4.0
CVE-2014-0403 [MEDIUM] JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)
JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)
Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5898 and CVE-2014-0375.
Package: java-1.7.0-oracle (Red Hat Enterprise Linux 7) - Not affected
Red Hat
JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)
vendor_redhat·2014-01-14·CVSS 4.0
CVE-2014-0375 [MEDIUM] JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)
JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)
Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5898 and CVE-2014-0403.
Package: java-1.7.0-oracle (Red Hat Enterprise Linux 7) - Not affected
Ubuntu
MySQL vulnerabilities
vendor_ubuntu·2013-01-22
CVE-2012-0572 MySQL vulnerabilities
Title: MySQL vulnerabilities
Summary: Several security issues were fixed in MySQL.
Multiple security issues were discovered in MySQL and this update includes
new upstream MySQL versions to fix these issues.
MySQL has been updated to 5.1.67 in Ubuntu 10.04 LTS and Ubuntu 11.10.
Ubuntu 12.04 LTS and Ubuntu 12.10 have been updated to MySQL 5.5.29.
In addition to security fixes, the updated packages contain bug fixes, new
features, and possibly incompatible changes.
Please see the following for more information:
http://dev.mysql.com/doc/relnotes/mysql/5.1/en/news-5-1-67.html
http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-29.html
http://www.oracle.com/technetwork/topics/security/cpujan2013-1515902.html
Instructions: In general, a standard system update will make all the necessary
Red Hat
mysql: Unspecified vulnerability in the server replication of the Oracle MySQL server allows remote attackers to alter confidentiality and integrity
vendor_redhat·2013-01-15·CVSS 5.4
CVE-2013-0375 [MEDIUM] mysql: Unspecified vulnerability in the server replication of the Oracle MySQL server allows remote attackers to alter confidentiality and integrity
mysql: Unspecified vulnerability in the server replication of the Oracle MySQL server allows remote attackers to alter confidentiality and integrity
Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.1.28 and earlier, allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Server Replication.
Package: mysql (Red Hat Enterprise Linux 5) - Under investigation
GHSA
GHSA-q3h3-3c8r-f8fp: Unspecified vulnerability in the Server component in Oracle MySQL 5
ghsa_unreviewed·2022-05-05
CVE-2013-0375 [MEDIUM] CWE-89 GHSA-q3h3-3c8r-f8fp: Unspecified vulnerability in the Server component in Oracle MySQL 5
Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.1.28 and earlier, allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Server Replication.
No detection rules found.
No public exploits indexed.
http://rhn.redhat.com/errata/RHSA-2013-0219.htmlhttp://secunia.com/advisories/53372http://security.gentoo.org/glsa/glsa-201308-06.xmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2013:150http://www.oracle.com/technetwork/topics/security/cpujan2013-1515902.htmlhttp://www.ubuntu.com/usn/USN-1703-1https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17175http://rhn.redhat.com/errata/RHSA-2013-0219.htmlhttp://secunia.com/advisories/53372http://security.gentoo.org/glsa/glsa-201308-06.xmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2013:150http://www.oracle.com/technetwork/topics/security/cpujan2013-1515902.htmlhttp://www.ubuntu.com/usn/USN-1703-1https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17175
2013-01-17
Published