Wind River Support Network

HomeDefectsLIN10-6946
Fixed

LIN10-6946 : Security Advisory - mariadb - CVE-2020-2574

Created: Jan 18, 2020    Updated: Apr 10, 2020
Resolved Date: Apr 1, 2020
Found In Version: 10.17.41.1
Fix Version: 10.17.41.20
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.46 and prior, 5.7.28 and prior and 8.0.18 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Client. CVSS 3.0 Base Score 5.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H).

CREATE(Triage):(User=admin) [CVE-2020-2574|https://nvd.nist.gov/vuln/detail/CVE-2020-2574]

CVEs


Live chat
Online