CVE-2020-2933Oracle Mysql Connector J vulnerability

8 documents7 sources
Severity
2.2LOWNVD
EPSS
0.7%
top 27.26%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 15
Latest updateMay 24

Description

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 5.1.48 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Connectors. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Connectors. CVSS 3.0 Base Score 2.2 (Availability impacts). CVSS Vector: (C

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:LExploitability: 0.7 | Impact: 1.4

Affected Packages2 packages

CVEListV5oracle_corporation/mysql_connectors5.1.48 and prior

Also affects: Debian Linux 8.0, 9.0, Fedora 32, 33

🔴Vulnerability Details

3
GHSA
GHSA-cj4p-6gr4-7rwr: Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J)2022-05-24
CVEList
CVE-2020-2933: Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J)2020-04-15
OSV
CVE-2020-2933: Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J)2020-04-15

📋Vendor Advisories

2
Red Hat
mysql-connector-java: allows high privileged attacker with network access via multiple protocols to compromise MySQL Connectors which could result in unauthorized partial DoS2020-04-15
Oracle
Oracle Oracle MySQL Risk Matrix: Connector/J — CVE-2020-29332020-04-15

💬Community

2
Bugzilla
CVE-2020-2933 mysql-connector-java: allows high privileged attacker with network access via multiple protocols to compromise MySQL Connectors which could result in unauthorized partial DoS2020-06-25
Bugzilla
CVE-2020-2933 mysql-connector-java: allows high privileged attacker with network access via multiple protocols to compromise MySQL Connectors which could result in unauthorized partial DoS [fedora-all2020-06-25
CVE-2020-2933 — Oracle Mysql Connector J vulnerability | cvebase