CVE-2019-2630
Published on: 04/23/2019 12:00:00 AM UTC
Last Modified on: 01/30/2023 03:44:00 PM UTC
Certain versions of Mysql from Oracle contain the following vulnerability:
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 8.0.15 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).
- CVE-2019-2630 has been assigned by
[email protected] to track the vulnerability - currently rated as MEDIUM severity.
- Affected Vendor/Software:
Oracle Corporation - MySQL Server version = 8.0.15 and prior
CVSS3 Score: 4.4 - MEDIUM
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
NETWORK | HIGH | HIGH | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | NONE | NONE | HIGH |
CVSS2 Score: 3.5 - LOW
Access Vector ⓘ |
Access Complexity |
Authentication |
---|---|---|
NETWORK | MEDIUM | SINGLE |
Confidentiality Impact |
Integrity Impact |
Availability Impact |
NONE | NONE | PARTIAL |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Oracle Critical Patch Update - April 2019 | Patch Vendor Advisory web.archive.org text/html Inactive LinkNot Archived |
![]() |
No Description Provided | Third Party Advisory support.f5.com text/html |
![]() |
Red Hat Customer Portal | access.redhat.com text/html |
![]() |
Red Hat Customer Portal | access.redhat.com text/html |
![]() |
Related QID Numbers
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Oracle | Mysql | All | All | All | All |
Operating System | Redhat | Enterprise Linux | 8.0 | All | All | All |
Operating System | Redhat | Enterprise Linux Eus | 8.1 | All | All | All |
Operating System | Redhat | Enterprise Linux Eus | 8.2 | All | All | All |
Operating System | Redhat | Enterprise Linux Eus | 8.4 | All | All | All |
Operating System | Redhat | Enterprise Linux Eus | 8.6 | All | All | All |
Operating System | Redhat | Enterprise Linux Server Aus | 8.2 | All | All | All |
Operating System | Redhat | Enterprise Linux Server Aus | 8.4 | All | All | All |
Operating System | Redhat | Enterprise Linux Server Aus | 8.6 | All | All | All |
Operating System | Redhat | Enterprise Linux Server Tus | 8.2 | All | All | All |
Operating System | Redhat | Enterprise Linux Server Tus | 8.4 | All | All | All |
Operating System | Redhat | Enterprise Linux Server Tus | 8.6 | All | All | All |
Application | Redhat | Software Collections | 1.0 | All | All | All |
- cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux_eus:8.1:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux_eus:8.2:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux_eus:8.4:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux_eus:8.6:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux_server_aus:8.2:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux_server_aus:8.4:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux_server_aus:8.6:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux_server_tus:8.2:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux_server_tus:8.4:*:*:*:*:*:*:*:
- cpe:2.3:o:redhat:enterprise_linux_server_tus:8.6:*:*:*:*:*:*:*:
- cpe:2.3:a:redhat:software_collections:1.0:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE