1112 lines
56 KiB
JSON
1112 lines
56 KiB
JSON
{
|
|
"Definition": [
|
|
{
|
|
"ID": "oval:org.altlinux.errata:def:20151152",
|
|
"Version": "oval:org.altlinux.errata:def:20151152",
|
|
"Class": "patch",
|
|
"Metadata": {
|
|
"Title": "ALT-PU-2015-1152: package `MySQL` update to version 5.5.42-alt1",
|
|
"AffectedList": [
|
|
{
|
|
"Family": "unix",
|
|
"Platforms": [
|
|
"ALT Linux branch c9f2"
|
|
],
|
|
"Products": [
|
|
"ALT SPWorkstation",
|
|
"ALT SPServer"
|
|
]
|
|
}
|
|
],
|
|
"References": [
|
|
{
|
|
"RefID": "ALT-PU-2015-1152",
|
|
"RefURL": "https://errata.altlinux.org/ALT-PU-2015-1152",
|
|
"Source": "ALTPU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00338",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00338",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00339",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00339",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00340",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00340",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00341",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00341",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00343",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00343",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00345",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00345",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00346",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00346",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00347",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00347",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00348",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00348",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00350",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00350",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00351",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00351",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00352",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00352",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00353",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00353",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00354",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00354",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00355",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00355",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00356",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00356",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00357",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00357",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00360",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00360",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2014-00361",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2014-00361",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2015-09981",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2015-09981",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2015-09982",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2015-09982",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2015-09986",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2015-09986",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2015-09991",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2015-09991",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "CVE-2013-2391",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2013-2391",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2013-3839",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2013-3839",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2013-5807",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2013-5807",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2013-5891",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2013-5891",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2013-5908",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2013-5908",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-0001",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-0001",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-0384",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-0384",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-0386",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-0386",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-0393",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-0393",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-0401",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-0401",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-0402",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-0402",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-0412",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-0412",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-0420",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-0420",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-0437",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-0437",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-2419",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-2419",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-2430",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-2430",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-2431",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-2431",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-2432",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-2432",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-2436",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-2436",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-2438",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-2438",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-2440",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-2440",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-2494",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-2494",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-4207",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-4207",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-4243",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-4243",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-4258",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-4258",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-4260",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-4260",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-4274",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-4274",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-4287",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-4287",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6463",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6463",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6464",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6464",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6469",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6469",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6478",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6478",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6484",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6484",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6491",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6491",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6494",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6494",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6495",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6495",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6496",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6496",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6500",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6500",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6505",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6505",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6507",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6507",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6520",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6520",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6530",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6530",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6551",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6551",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6555",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6555",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6559",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6559",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2014-6568",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-6568",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2015-0374",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-0374",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2015-0381",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-0381",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2015-0382",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-0382",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2015-0391",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-0391",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2015-0411",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-0411",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2015-0432",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-0432",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2015-0433",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-0433",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2015-0441",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-0441",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2015-2568",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-2568",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2015-2573",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-2573",
|
|
"Source": "CVE"
|
|
}
|
|
],
|
|
"Description": "This update upgrades MySQL to version 5.5.42-alt1. \nSecurity Fix(es):\n\n * BDU:2014-00338: Уязвимость системы управления базами данных MySQL, позволяющая злоумышленнику вызвать отказ в обслуживании\n\n * BDU:2014-00339: Уязвимость системы управления базами данных Marida DB, позволяющая злоумышленнику вызвать отказ в обслуживании\n\n * BDU:2014-00340: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00341: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00343: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00345: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00346: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00347: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00348: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00350: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00351: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00352: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00353: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00354: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00355: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00356: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00357: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00360: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2014-00361: Уязвимость системы управления базами данных MySQL, позволяющая удаленным пользователям, прошедшим аутентификацию, оказать воздействие на доступность данных\n\n * BDU:2015-09981: Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании\n\n * BDU:2015-09982: Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании\n\n * BDU:2015-09986: Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании\n\n * BDU:2015-09991: Уязвимость системы управления базами данных MySQL, позволяющая удаленному нарушителю вызвать отказ в обслуживании\n\n * CVE-2013-2391: Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier allows local users to affect confidentiality and integrity via unknown vectors related to Server Install.\n\n * CVE-2013-3839: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.70 and earlier, 5.5.32 and earlier, and 5.6.12 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.\n\n * CVE-2013-5807: Unspecified vulnerability in Oracle MySQL Server 5.5.x through 5.5.32 and 5.6.x through 5.6.12 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Replication.\n\n * CVE-2013-5891: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.33 and earlier and 5.6.13 and earlier allows remote authenticated users to affect availability via unknown vectors related to Partition.\n\n * CVE-2013-5908: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote attackers to affect availability via unknown vectors related to Error Handling.\n\n * CVE-2014-0001: Buffer overflow in client/mysql.cc in Oracle MySQL and MariaDB before 5.5.35 allows remote database servers to cause a denial of service (crash) and possibly execute arbitrary code via a long server version string.\n\n * CVE-2014-0384: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to XML.\n\n * CVE-2014-0386: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.71 and earlier, 5.5.33 and earlier, and 5.6.13 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.\n\n * CVE-2014-0393: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.71 and earlier, 5.5.33 and earlier, and 5.6.13 and earlier allows remote authenticated users to affect integrity via unknown vectors related to InnoDB.\n\n * CVE-2014-0401: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors.\n\n * CVE-2014-0402: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.71 and earlier, 5.5.33 and earlier, and 5.6.13 and earlier allows remote authenticated users to affect availability via unknown vectors related to Locking.\n\n * CVE-2014-0412: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to InnoDB.\n\n * CVE-2014-0420: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.34 and earlier, and 5.6.14 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Replication.\n\n * CVE-2014-0437: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.\n\n * CVE-2014-2419: Unspecified vulnerability in Oracle MySQL Server 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Partition.\n\n * CVE-2014-2430: Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote authenticated users to affect availability via unknown vectors related to Performance Schema.\n\n * CVE-2014-2431: Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote attackers to affect availability via unknown vectors related to Options.\n\n * CVE-2014-2432: Unspecified vulnerability Oracle the MySQL Server component 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Federated.\n\n * CVE-2014-2436: Unspecified vulnerability in Oracle MySQL Server 5.5.36 and earlier and 5.6.16 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to RBR.\n\n * CVE-2014-2438: Unspecified vulnerability in Oracle MySQL Server 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via unknown vectors related to Replication.\n\n * CVE-2014-2440: Unspecified vulnerability in the MySQL Client component in Oracle MySQL 5.5.36 and earlier and 5.6.16 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.\n\n * CVE-2014-2494: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to ENARC.\n\n * CVE-2014-4207: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to SROPTZR.\n\n * CVE-2014-4243: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to ENFED.\n\n * CVE-2014-4258: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier and 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SRINFOSC.\n\n * CVE-2014-4260: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier, and 5.6.17 and earlier, allows remote authenticated users to affect integrity and availability via vectors related to SRCHAR.\n\n * CVE-2014-4274: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows local users to affect confidentiality, integrity, and availability via vectors related to SERVER:MyISAM.\n\n * CVE-2014-4287: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:CHARACTER SETS.\n\n * CVE-2014-6463: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:REPLICATION ROW FORMAT BINARY LOG DML.\n\n * CVE-2014-6464: Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:INNODB DML FOREIGN KEYS.\n\n * CVE-2014-6469: Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:OPTIMIZER.\n\n * CVE-2014-6478: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote attackers to affect integrity via vectors related to SERVER:SSL:yaSSL.\n\n * CVE-2014-6484: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to SERVER:DML.\n\n * CVE-2014-6491: Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to SERVER:SSL:yaSSL, a different vulnerability than CVE-2014-6500.\n\n * CVE-2014-6494: Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulnerability than CVE-2014-6496.\n\n * CVE-2014-6495: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote attackers to affect availability via vectors related to SERVER:SSL:yaSSL.\n\n * CVE-2014-6496: Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulnerability than CVE-2014-6494.\n\n * CVE-2014-6500: Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to SERVER:SSL:yaSSL, a different vulnerability than CVE-2014-6491.\n\n * CVE-2014-6505: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to SERVER:MEMORY STORAGE ENGINE.\n\n * CVE-2014-6507: Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SERVER:DML.\n\n * CVE-2014-6520: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:DDL.\n\n * CVE-2014-6530: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to CLIENT:MYSQLDUMP.\n\n * CVE-2014-6551: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows local users to affect confidentiality via vectors related to CLIENT:MYSQLADMIN.\n\n * CVE-2014-6555: Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SERVER:DML.\n\n * CVE-2014-6559: Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect confidentiality via vectors related to C API SSL CERTIFICATE HANDLING.\n\n * CVE-2014-6568: Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier, and 5.6.21 and earlier, allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DML.\n\n * CVE-2015-0374: Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Security : Privileges : Foreign Key.\n\n * CVE-2015-0381: Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote attackers to affect availability via unknown vectors related to Server : Replication, a different vulnerability than CVE-2015-0382.\n\n * CVE-2015-0382: Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote attackers to affect availability via unknown vectors related to Server : Replication, a different vulnerability than CVE-2015-0381.\n\n * CVE-2015-0391: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.\n\n * CVE-2015-0411: Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier, and 5.6.21 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Server : Security : Encryption.\n\n * CVE-2015-0432: Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DDL : Foreign Key.\n\n * CVE-2015-0433: Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote authenticated users to affect availability via vectors related to InnoDB : DML.\n\n * CVE-2015-0441: Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Security : Encryption.\n\n * CVE-2015-2568: Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote attackers to affect availability via unknown vectors related to Server : Security : Privileges.\n\n * CVE-2015-2573: Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.",
|
|
"Advisory": {
|
|
"From": "errata.altlinux.org",
|
|
"Severity": "High",
|
|
"Rights": "Copyright 2024 BaseALT Ltd.",
|
|
"Issued": {
|
|
"Date": "2015-02-09"
|
|
},
|
|
"Updated": {
|
|
"Date": "2015-02-09"
|
|
},
|
|
"BDUs": [
|
|
{
|
|
"ID": "BDU:2014-00338",
|
|
"CVSS": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
|
|
"CWE": "CWE-119",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00338",
|
|
"Impact": "High",
|
|
"Public": "20140131"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00339",
|
|
"CVSS": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
|
|
"CWE": "CWE-119",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00339",
|
|
"Impact": "High",
|
|
"Public": "20140131"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00340",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00340",
|
|
"Impact": "Low",
|
|
"Public": "20140415"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00341",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00341",
|
|
"Impact": "Low",
|
|
"Public": "20140415"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00343",
|
|
"CVSS": "AV:N/AC:M/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00343",
|
|
"Impact": "Low",
|
|
"Public": "20140415"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00345",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00345",
|
|
"Impact": "Low",
|
|
"Public": "20140415"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00346",
|
|
"CVSS": "AV:N/AC:M/Au:M/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00346",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00347",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00347",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00348",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00348",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00350",
|
|
"CVSS": "AV:N/AC:M/Au:S/C:P/I:P/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00350",
|
|
"Impact": "Low",
|
|
"Public": "20140415"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00351",
|
|
"CVSS": "AV:N/AC:M/Au:M/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00351",
|
|
"Impact": "Low",
|
|
"Public": "20140415"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00352",
|
|
"CVSS": "AV:N/AC:M/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00352",
|
|
"Impact": "Low",
|
|
"Public": "20140415"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00353",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00353",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00354",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00354",
|
|
"Impact": "Low",
|
|
"Public": "20140415"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00355",
|
|
"CVSS": "AV:N/AC:L/Au:M/C:N/I:P/A:N",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00355",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00356",
|
|
"CVSS": "AV:N/AC:M/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00356",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00357",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00357",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00360",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00360",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "BDU:2014-00361",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:N/I:N/A:P",
|
|
"CWE": "CWE-264",
|
|
"Href": "https://bdu.fstec.ru/vul/2014-00361",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "BDU:2015-09981",
|
|
"CVSS": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
|
|
"CWE": "CWE-20",
|
|
"Href": "https://bdu.fstec.ru/vul/2015-09981",
|
|
"Impact": "Low",
|
|
"Public": "20150416"
|
|
},
|
|
{
|
|
"ID": "BDU:2015-09982",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-20",
|
|
"Href": "https://bdu.fstec.ru/vul/2015-09982",
|
|
"Impact": "Low",
|
|
"Public": "20150416"
|
|
},
|
|
{
|
|
"ID": "BDU:2015-09986",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-20",
|
|
"Href": "https://bdu.fstec.ru/vul/2015-09986",
|
|
"Impact": "Low",
|
|
"Public": "20150416"
|
|
},
|
|
{
|
|
"ID": "BDU:2015-09991",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "CWE-20",
|
|
"Href": "https://bdu.fstec.ru/vul/2015-09991",
|
|
"Impact": "Low",
|
|
"Public": "20150416"
|
|
}
|
|
],
|
|
"CVEs": [
|
|
{
|
|
"ID": "CVE-2013-2391",
|
|
"CVSS": "AV:L/AC:M/Au:S/C:P/I:P/A:N",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2013-2391",
|
|
"Impact": "Low",
|
|
"Public": "20130417"
|
|
},
|
|
{
|
|
"ID": "CVE-2013-3839",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2013-3839",
|
|
"Impact": "Low",
|
|
"Public": "20131016"
|
|
},
|
|
{
|
|
"ID": "CVE-2013-5807",
|
|
"CVSS": "AV:N/AC:M/Au:S/C:P/I:P/A:N",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2013-5807",
|
|
"Impact": "Low",
|
|
"Public": "20131016"
|
|
},
|
|
{
|
|
"ID": "CVE-2013-5891",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2013-5891",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "CVE-2013-5908",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2013-5908",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-0001",
|
|
"CVSS": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
|
|
"CWE": "CWE-119",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-0001",
|
|
"Impact": "High",
|
|
"Public": "20140131"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-0384",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-0384",
|
|
"Impact": "Low",
|
|
"Public": "20140416"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-0386",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-0386",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-0393",
|
|
"CVSS": "AV:N/AC:L/Au:M/C:N/I:P/A:N",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-0393",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-0401",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-0401",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-0402",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-0402",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-0412",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-0412",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-0420",
|
|
"CVSS": "AV:N/AC:M/Au:M/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-0420",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-0437",
|
|
"CVSS": "AV:N/AC:M/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-0437",
|
|
"Impact": "Low",
|
|
"Public": "20140115"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-2419",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-2419",
|
|
"Impact": "Low",
|
|
"Public": "20140416"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-2430",
|
|
"CVSS": "AV:N/AC:M/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-2430",
|
|
"Impact": "Low",
|
|
"Public": "20140416"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-2431",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-2431",
|
|
"Impact": "Low",
|
|
"Public": "20140416"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-2432",
|
|
"CVSS": "AV:N/AC:M/Au:M/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-2432",
|
|
"Impact": "Low",
|
|
"Public": "20140416"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-2436",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:P/I:P/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-2436",
|
|
"Impact": "Low",
|
|
"Public": "20140416"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-2438",
|
|
"CVSS": "AV:N/AC:M/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-2438",
|
|
"Impact": "Low",
|
|
"Public": "20140416"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-2440",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:P/I:P/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-2440",
|
|
"Impact": "Low",
|
|
"Public": "20140416"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-2494",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-2494",
|
|
"Impact": "Low",
|
|
"Public": "20140717"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-4207",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-4207",
|
|
"Impact": "Low",
|
|
"Public": "20140717"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-4243",
|
|
"CVSS": "AV:N/AC:M/Au:M/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-4243",
|
|
"Impact": "Low",
|
|
"Public": "20140717"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-4258",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:P/I:P/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-4258",
|
|
"Impact": "Low",
|
|
"Public": "20140717"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-4260",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:P/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-4260",
|
|
"Impact": "Low",
|
|
"Public": "20140717"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-4274",
|
|
"CVSS": "AV:L/AC:M/Au:S/C:P/I:P/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-4274",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-4287",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-4287",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6463",
|
|
"CVSS": "AV:N/AC:L/Au:M/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6463",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6464",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6464",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6469",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:C",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6469",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6478",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6478",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6484",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6484",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6491",
|
|
"CVSS": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6491",
|
|
"Impact": "High",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6494",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6494",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6495",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6495",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6496",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6496",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6500",
|
|
"CVSS": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6500",
|
|
"Impact": "High",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6505",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6505",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6507",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6507",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6520",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6520",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6530",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:P/I:P/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6530",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6551",
|
|
"CVSS": "AV:L/AC:L/Au:N/C:P/I:N/A:N",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6551",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6555",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:P/I:P/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6555",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6559",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:P/I:N/A:N",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6559",
|
|
"Impact": "Low",
|
|
"Public": "20141015"
|
|
},
|
|
{
|
|
"ID": "CVE-2014-6568",
|
|
"CVSS": "AV:N/AC:M/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-6568",
|
|
"Impact": "Low",
|
|
"Public": "20150121"
|
|
},
|
|
{
|
|
"ID": "CVE-2015-0374",
|
|
"CVSS": "AV:N/AC:M/Au:S/C:P/I:N/A:N",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-0374",
|
|
"Impact": "Low",
|
|
"Public": "20150121"
|
|
},
|
|
{
|
|
"ID": "CVE-2015-0381",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-0381",
|
|
"Impact": "Low",
|
|
"Public": "20150121"
|
|
},
|
|
{
|
|
"ID": "CVE-2015-0382",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-0382",
|
|
"Impact": "Low",
|
|
"Public": "20150121"
|
|
},
|
|
{
|
|
"ID": "CVE-2015-0391",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-0391",
|
|
"Impact": "Low",
|
|
"Public": "20150121"
|
|
},
|
|
{
|
|
"ID": "CVE-2015-0411",
|
|
"CVSS": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-0411",
|
|
"Impact": "High",
|
|
"Public": "20150121"
|
|
},
|
|
{
|
|
"ID": "CVE-2015-0432",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-0432",
|
|
"Impact": "Low",
|
|
"Public": "20150121"
|
|
},
|
|
{
|
|
"ID": "CVE-2015-0433",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-0433",
|
|
"Impact": "Low",
|
|
"Public": "20150416"
|
|
},
|
|
{
|
|
"ID": "CVE-2015-0441",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-0441",
|
|
"Impact": "Low",
|
|
"Public": "20150416"
|
|
},
|
|
{
|
|
"ID": "CVE-2015-2568",
|
|
"CVSS": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-2568",
|
|
"Impact": "Low",
|
|
"Public": "20150416"
|
|
},
|
|
{
|
|
"ID": "CVE-2015-2573",
|
|
"CVSS": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-2573",
|
|
"Impact": "Low",
|
|
"Public": "20150416"
|
|
}
|
|
],
|
|
"AffectedCPEs": {
|
|
"CPEs": [
|
|
"cpe:/o:alt:spworkstation:8.4",
|
|
"cpe:/o:alt:spserver:8.4"
|
|
]
|
|
}
|
|
}
|
|
},
|
|
"Criteria": {
|
|
"Operator": "AND",
|
|
"Criterions": [
|
|
{
|
|
"TestRef": "oval:org.altlinux.errata:tst:3001",
|
|
"Comment": "ALT Linux must be installed"
|
|
}
|
|
],
|
|
"Criterias": [
|
|
{
|
|
"Operator": "OR",
|
|
"Criterions": [
|
|
{
|
|
"TestRef": "oval:org.altlinux.errata:tst:20151152001",
|
|
"Comment": "MySQL-bench is earlier than 0:5.5.42-alt1"
|
|
},
|
|
{
|
|
"TestRef": "oval:org.altlinux.errata:tst:20151152002",
|
|
"Comment": "MySQL-client is earlier than 0:5.5.42-alt1"
|
|
},
|
|
{
|
|
"TestRef": "oval:org.altlinux.errata:tst:20151152003",
|
|
"Comment": "MySQL-server is earlier than 0:5.5.42-alt1"
|
|
},
|
|
{
|
|
"TestRef": "oval:org.altlinux.errata:tst:20151152004",
|
|
"Comment": "MySQL-server-perl is earlier than 0:5.5.42-alt1"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
} |