CVE-2019-2534

10 documents7 sources
Severity
7.1HIGH
EPSS
0.3%
top 48.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 16
Latest updateMay 13

Description

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Server accessible data as well as unauthorized

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:NExploitability: 2.8 | Impact: 4.2

Affected Packages5 packages

CVEListV5oracle_corporation/mysql_server5.6.42 and prior, 5.7.24 and prior, 8.0.13 and prior+2
NVDoracle/mysql5.6.05.6.42+2
Ubuntumysql-5.7< 5.7.25-0ubuntu0.16.04.2+1

Also affects: Ubuntu Linux 16.04, 18.04, 18.10, Enterprise Linux 8.0, 8.1, 8.2, 8.4, 8.6

Patches

🔴Vulnerability Details

3
GHSA
GHSA-h666-h4f3-f2vp: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication)2022-05-13
CVEList
CVE-2019-2534: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication)2019-01-16
OSV
CVE-2019-2534: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication)2019-01-16

📋Vendor Advisories

2
Ubuntu
MySQL vulnerabilities2019-01-23
Red Hat
mysql: Server: Replication unspecified vulnerability (CPU Jan 2019)2019-01-15

💬Community

4
Bugzilla
CVE-2019-2420 CVE-2019-2434 CVE-2019-2455 CVE-2019-2481 CVE-2019-2482 CVE-2019-2486 CVE-2019-2503 CVE-2019-2507 CVE-2019-2510 CVE-2019-2528 CVE-2019-2529 CVE-2019-2531 CVE-2019-2532 CVE-2019-2534 CVE-2019-01-16
Bugzilla
CVE-2019-2420 CVE-2019-2434 CVE-2019-2455 CVE-2019-2481 CVE-2019-2482 CVE-2019-2486 CVE-2019-2503 CVE-2019-2507 CVE-2019-2510 CVE-2019-2528 CVE-2019-2529 CVE-2019-2531 CVE-2019-2532 CVE-2019-2534 ... 2019-01-16
Bugzilla
CVE-2019-2455 CVE-2019-2481 CVE-2019-2482 CVE-2019-2503 CVE-2019-2507 CVE-2019-2529 CVE-2019-2531 CVE-2019-2534 CVE-2019-2537 mysql:5.6/community-mysql: various flaws [fedora-28]2019-01-16
Bugzilla
CVE-2019-2534 mysql: Server: Replication unspecified vulnerability (CPU Jan 2019)2019-01-16