Vulnerability Name: CVE-2012-1703 (CCN-75017) Assigned: 2012-04-17 Published: 2012-04-17 Updated: 2022-07-01 Summary: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1690 . CVSS v3 Severity: 5.7 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H )Exploitability Metrics: Attack Vector (AV): NetworkAttack Complexity (AC): LowPrivileges Required (PR): LowUser Interaction (UI): RequiredScope: Scope (S): UnchangedImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): High
CVSS v2 Severity: 6.8 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C )5.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): LowAuthentication (Au): Single_InstanceImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Complete
6.8 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C )5.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): LowAthentication (Au): Single_InstanceImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Complete
6.8 Medium (REDHAT CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C )5.0 Medium (REDHAT Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): LowAuthentication (Au): Single_InstanceImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Complete
Vulnerability Type: CWE-noinfo Vulnerability Consequences: Denial of Service References: Source: MITRE Type: CNACVE-2012-1703 Source: CCN Type: RHSA-2012-1462Important: mysql security update Source: REDHAT Type: Third Party AdvisoryRHSA-2012:1462 Source: CCN Type: SA48890Oracle MySQL Server Multiple Vulnerabilities Source: SECUNIA Type: Not Applicable, Permissions Required48890 Source: SECUNIA Type: Not Applicable, Permissions Required49179 Source: SECUNIA Type: Not Applicable, Permissions Required51309 Source: SECUNIA Type: Not Applicable, Permissions Required53372 Source: GENTOO Type: Third Party AdvisoryGLSA-201308-06 Source: DEBIAN Type: DSA-2496mysql-5.1 -- several vulnerabilities Source: MANDRIVA Type: Broken LinkMDVSA-2013:150 Source: CCN Type: Oracle Critical Patch Update Advisory - April 2012Oracle Critical Patch Update Advisory - April 2012 Source: CONFIRM Type: Vendor Advisoryhttp://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html Source: CCN Type: OSVDB ID: 81373Oracle MySQL Server Server Optimizer Component Unspecified Remote DoS (2012-1703) Source: BID Type: Third Party Advisory, VDB Entry53058 Source: CCN Type: BID-53058Oracle MySQL CVE-2012-1703 Remote MySQL Server Vulnerability Source: SECTRACK Type: Broken Link, Third Party Advisory, VDB Entry1026934 Source: XF Type: UNKNOWNmysqlserver-serveroptimizer-dos(75017) Vulnerable Configuration: Configuration 1 :cpe:/a:oracle:mysql:*:*:*:*:*:*:*:* (Version >= 5.1.0 and <= 5.1.61)OR cpe:/a:oracle:mysql:*:*:*:*:*:*:*:* (Version >= 5.5.0 and <= 5.5.21) Configuration 2 :cpe:/o:redhat:enterprise_linux_hpc_node:6.0:*:*:*:*:*:*:* OR cpe:/o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:* OR cpe:/o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:* OR cpe:/o:redhat:enterprise_linux_server_eus:6.3.z:*:*:*:*:*:*:* OR cpe:/o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:* Configuration 3 :cpe:/a:mariadb:mariadb:*:*:*:*:*:*:*:* (Version >= 5.5.0 and < 5.5.22)OR cpe:/a:mariadb:mariadb:*:*:*:*:*:*:*:* (Version >= 5.1.0 and < 5.1.62) Configuration RedHat 1 :cpe:/o:redhat:enterprise_linux:6:*:*:*:*:*:*:* Configuration RedHat 2 :cpe:/o:redhat:enterprise_linux:6::client:*:*:*:*:* Configuration RedHat 3 :cpe:/o:redhat:enterprise_linux:6::computenode:*:*:*:*:* Configuration RedHat 4 :cpe:/o:redhat:enterprise_linux:6::server:*:*:*:*:* Configuration RedHat 5 :cpe:/o:redhat:enterprise_linux:6::workstation:*:*:*:*:* Configuration CCN 1 :cpe:/a:oracle:mysql:5.1.1:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.10:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.11:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.12:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.13:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.14:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.15:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.16:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.17:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.2:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.23:-:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.3:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.4:*:*:*:*:*:*:* OR cpe:/a:mysql:mysql:5.1.5:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.6:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.7:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.8:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.9:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.30:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.32:bzr:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.23:bk:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.21:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.22:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.23:a:*:*:*:*:*:* OR cpe:/a:mysql:mysql:5.1.5a:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.18:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.19:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.20:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.45:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.44:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.43:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.42:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.41:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.40:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.39:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.38:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.37:-:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.36:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.35:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.34:-:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.33:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.32:-:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.31:-:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.46:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.47:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.48:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.49:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.50:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.23:a:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.24:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.25:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.26:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.27:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.28:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.29:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.31:sp1:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.34:sp1:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.37:sp1:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.40:sp1:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.43:sp1:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.46:sp1:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.1:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.2:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.3:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.4:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.49:sp1:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.5:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.8:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.51:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.52:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.52:sp1:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.53:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.54:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.55:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.56:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.57:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.58:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.59:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.60:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.1.61:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.10:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.11:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.12:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.13:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.14:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.15:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.16:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.17:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.18:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.19:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.20:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.21:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.9:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.7:*:*:*:*:*:*:* OR cpe:/a:oracle:mysql:5.5.6:*:*:*:*:*:*:* AND cpe:/o:redhat:enterprise_linux:6:*:server:*:*:*:*:* OR cpe:/o:redhat:enterprise_linux:6:*:workstation:*:*:*:*:* OR cpe:/o:redhat:enterprise_linux_desktop:6:*:*:*:*:*:*:* OR cpe:/o:redhat:enterprise_linux_hpc_node:6:*:*:*:*:*:*:* Denotes that component is vulnerable Oval Definitions BACK
oracle mysql *
oracle mysql *
redhat enterprise linux hpc node 6.0
redhat enterprise linux desktop 6.0
redhat enterprise linux server 6.0
redhat enterprise linux server eus 6.3.z
redhat enterprise linux workstation 6.0
mariadb mariadb *
mariadb mariadb *
mysql mysql 5.1.1
mysql mysql 5.1.10
mysql mysql 5.1.11
mysql mysql 5.1.12
mysql mysql 5.1.13
mysql mysql 5.1.14
mysql mysql 5.1.15
mysql mysql 5.1.16
mysql mysql 5.1.17
mysql mysql 5.1.2
mysql mysql 5.1.23
mysql mysql 5.1.3
mysql mysql 5.1.4
mysql mysql 5.1.5
mysql mysql 5.1.6
mysql mysql 5.1.7
mysql mysql 5.1.8
mysql mysql 5.1.9
mysql mysql 5.1
mysql mysql 5.1.30
mysql mysql 5.1.32-bzr
mysql mysql 5.1.23_bk
mysql mysql 5.1.21
mysql mysql 5.1.22
mysql mysql 5.1.23a
mysql mysql 5.1.5a
mysql mysql 5.1.18
mysql mysql 5.1.19
mysql mysql 5.1.20
mysql mysql 5.1.45
mysql mysql 5.1.44
mysql mysql 5.1.43
mysql mysql 5.1.42
mysql mysql 5.1.41
mysql mysql 5.1.40
mysql mysql 5.1.39
mysql mysql 5.1.38
mysql mysql 5.1.37
mysql mysql 5.1.36
mysql mysql 5.1.35
mysql mysql 5.1.34
mysql mysql 5.1.33
mysql mysql 5.1.32
mysql mysql 5.1.31
mysql mysql 5.1.46
mysql mysql 5.1.47
mysql mysql 5.1.48
mysql mysql 5.1.49
mysql mysql 5.1.50
mysql mysql 5.1.23 a
mysql mysql 5.1.24
mysql mysql 5.1.25
mysql mysql 5.1.26
mysql mysql 5.1.27
mysql mysql 5.1.28
mysql mysql 5.1.29
mysql mysql 5.1.31 sp1
mysql mysql 5.1.34 sp1
mysql mysql 5.1.37 sp1
mysql mysql 5.1.40 sp1
mysql mysql 5.1.43 sp1
mysql mysql 5.1.46 sp1
mysql mysql 5.5.1
mysql mysql 5.5.2
mysql mysql 5.5.3
mysql mysql 5.5.4
mysql mysql 5.1.49 sp1
mysql mysql 5.5.5
mysql mysql 5.5.8
oracle mysql 5.1.51
oracle mysql 5.1.52
oracle mysql 5.1.52 sp1
oracle mysql 5.1.53
oracle mysql 5.1.54
oracle mysql 5.1.55
oracle mysql 5.1.56
oracle mysql 5.1.57
oracle mysql 5.1.58
oracle mysql 5.1.59
oracle mysql 5.1.60
oracle mysql 5.1.61
oracle mysql 5.5.10
oracle mysql 5.5.11
oracle mysql 5.5.12
oracle mysql 5.5.13
oracle mysql 5.5.14
oracle mysql 5.5.15
oracle mysql 5.5.16
oracle mysql 5.5.17
oracle mysql 5.5.18
oracle mysql 5.5.19
oracle mysql 5.5.20
oracle mysql 5.5.21
mysql mysql 5.5.9
mysql mysql 5.5.7
mysql mysql 5.5.6
redhat enterprise linux 6
redhat enterprise linux 6
redhat enterprise linux desktop 6
redhat enterprise linux hpc node 6