Vulnerability Name: | CVE-2012-1703 (CCN-75017) |
Assigned: | 2012-04-17 |
Published: | 2012-04-17 |
Updated: | 2022-07-01 |
Summary: | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1690. |
CVSS v3 Severity: | 5.7 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H)Exploitability Metrics: | Attack Vector (AV): Network Attack Complexity (AC): Low Privileges Required (PR): Low User Interaction (UI): Required | Scope: | Scope (S): Unchanged
| Impact Metrics: | Confidentiality (C): None Integrity (I): None Availibility (A): High |
|
CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C) 5.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C/E:U/RL:OF/RC:C)Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Low Authentication (Au): Single_Instance | Impact Metrics: | Confidentiality (C): None Integrity (I): None Availibility (A): Complete | 6.8 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C) 5.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C/E:U/RL:OF/RC:C)Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Low Athentication (Au): Single_Instance
| Impact Metrics: | Confidentiality (C): None Integrity (I): None Availibility (A): Complete | 6.8 Medium (REDHAT CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C) 5.0 Medium (REDHAT Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C/E:U/RL:OF/RC:C)Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Low Authentication (Au): Single_Instance | Impact Metrics: | Confidentiality (C): None Integrity (I): None Availibility (A): Complete |
|
Vulnerability Type: | CWE-noinfo
|
Vulnerability Consequences: | Denial of Service |
References: | Source: MITRE Type: CNA CVE-2012-1703
Source: CCN Type: RHSA-2012-1462 Important: mysql security update
Source: REDHAT Type: Third Party Advisory RHSA-2012:1462
Source: CCN Type: SA48890 Oracle MySQL Server Multiple Vulnerabilities
Source: SECUNIA Type: Not Applicable, Permissions Required 48890
Source: SECUNIA Type: Not Applicable, Permissions Required 49179
Source: SECUNIA Type: Not Applicable, Permissions Required 51309
Source: SECUNIA Type: Not Applicable, Permissions Required 53372
Source: GENTOO Type: Third Party Advisory GLSA-201308-06
Source: DEBIAN Type: DSA-2496 mysql-5.1 -- several vulnerabilities
Source: MANDRIVA Type: Broken Link MDVSA-2013:150
Source: CCN Type: Oracle Critical Patch Update Advisory - April 2012 Oracle Critical Patch Update Advisory - April 2012
Source: CONFIRM Type: Vendor Advisory http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html
Source: CCN Type: OSVDB ID: 81373 Oracle MySQL Server Server Optimizer Component Unspecified Remote DoS (2012-1703)
Source: BID Type: Third Party Advisory, VDB Entry 53058
Source: CCN Type: BID-53058 Oracle MySQL CVE-2012-1703 Remote MySQL Server Vulnerability
Source: SECTRACK Type: Broken Link, Third Party Advisory, VDB Entry 1026934
Source: XF Type: UNKNOWN mysqlserver-serveroptimizer-dos(75017)
|
Vulnerable Configuration: | Configuration 1: cpe:/a:oracle:mysql:*:*:*:*:*:*:*:* (Version >= 5.1.0 and <= 5.1.61)OR cpe:/a:oracle:mysql:*:*:*:*:*:*:*:* (Version >= 5.5.0 and <= 5.5.21) Configuration 2: cpe:/o:redhat:enterprise_linux_hpc_node:6.0:*:*:*:*:*:*:*OR cpe:/o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*OR cpe:/o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*OR cpe:/o:redhat:enterprise_linux_server_eus:6.3.z:*:*:*:*:*:*:*OR cpe:/o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:* Configuration 3: cpe:/a:mariadb:mariadb:*:*:*:*:*:*:*:* (Version >= 5.5.0 and < 5.5.22)OR cpe:/a:mariadb:mariadb:*:*:*:*:*:*:*:* (Version >= 5.1.0 and < 5.1.62) Configuration RedHat 1: cpe:/o:redhat:enterprise_linux:6:*:*:*:*:*:*:* Configuration RedHat 2: cpe:/o:redhat:enterprise_linux:6::client:*:*:*:*:* Configuration RedHat 3: cpe:/o:redhat:enterprise_linux:6::computenode:*:*:*:*:* Configuration RedHat 4: cpe:/o:redhat:enterprise_linux:6::server:*:*:*:*:* Configuration RedHat 5: cpe:/o:redhat:enterprise_linux:6::workstation:*:*:*:*:* Configuration CCN 1: cpe:/a:oracle:mysql:5.1.1:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.10:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.11:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.12:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.13:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.14:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.15:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.16:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.17:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.2:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.23:-:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.3:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.4:*:*:*:*:*:*:*OR cpe:/a:mysql:mysql:5.1.5:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.6:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.7:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.8:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.9:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.30:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.32:bzr:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.23:bk:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.21:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.22:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.23:a:*:*:*:*:*:*OR cpe:/a:mysql:mysql:5.1.5a:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.18:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.19:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.20:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.45:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.44:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.43:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.42:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.41:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.40:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.39:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.38:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.37:-:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.36:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.35:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.34:-:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.33:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.32:-:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.31:-:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.46:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.47:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.48:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.49:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.50:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.23:a:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.24:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.25:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.26:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.27:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.28:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.29:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.31:sp1:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.34:sp1:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.37:sp1:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.40:sp1:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.43:sp1:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.46:sp1:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.1:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.2:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.3:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.4:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.49:sp1:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.5:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.8:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.51:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.52:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.52:sp1:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.53:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.54:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.55:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.56:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.57:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.58:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.59:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.60:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.1.61:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.10:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.11:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.12:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.13:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.14:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.15:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.16:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.17:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.18:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.19:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.20:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.21:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.9:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.7:*:*:*:*:*:*:*OR cpe:/a:oracle:mysql:5.5.6:*:*:*:*:*:*:*AND cpe:/o:redhat:enterprise_linux:6:*:server:*:*:*:*:*OR cpe:/o:redhat:enterprise_linux:6:*:workstation:*:*:*:*:*OR cpe:/o:redhat:enterprise_linux_desktop:6:*:*:*:*:*:*:*OR cpe:/o:redhat:enterprise_linux_hpc_node:6:*:*:*:*:*:*:*
Denotes that component is vulnerable |
Oval Definitions |
|
BACK |
oracle mysql *
oracle mysql *
redhat enterprise linux hpc node 6.0
redhat enterprise linux desktop 6.0
redhat enterprise linux server 6.0
redhat enterprise linux server eus 6.3.z
redhat enterprise linux workstation 6.0
mariadb mariadb *
mariadb mariadb *
mysql mysql 5.1.1
mysql mysql 5.1.10
mysql mysql 5.1.11
mysql mysql 5.1.12
mysql mysql 5.1.13
mysql mysql 5.1.14
mysql mysql 5.1.15
mysql mysql 5.1.16
mysql mysql 5.1.17
mysql mysql 5.1.2
mysql mysql 5.1.23
mysql mysql 5.1.3
mysql mysql 5.1.4
mysql mysql 5.1.5
mysql mysql 5.1.6
mysql mysql 5.1.7
mysql mysql 5.1.8
mysql mysql 5.1.9
mysql mysql 5.1
mysql mysql 5.1.30
mysql mysql 5.1.32-bzr
mysql mysql 5.1.23_bk
mysql mysql 5.1.21
mysql mysql 5.1.22
mysql mysql 5.1.23a
mysql mysql 5.1.5a
mysql mysql 5.1.18
mysql mysql 5.1.19
mysql mysql 5.1.20
mysql mysql 5.1.45
mysql mysql 5.1.44
mysql mysql 5.1.43
mysql mysql 5.1.42
mysql mysql 5.1.41
mysql mysql 5.1.40
mysql mysql 5.1.39
mysql mysql 5.1.38
mysql mysql 5.1.37
mysql mysql 5.1.36
mysql mysql 5.1.35
mysql mysql 5.1.34
mysql mysql 5.1.33
mysql mysql 5.1.32
mysql mysql 5.1.31
mysql mysql 5.1.46
mysql mysql 5.1.47
mysql mysql 5.1.48
mysql mysql 5.1.49
mysql mysql 5.1.50
mysql mysql 5.1.23 a
mysql mysql 5.1.24
mysql mysql 5.1.25
mysql mysql 5.1.26
mysql mysql 5.1.27
mysql mysql 5.1.28
mysql mysql 5.1.29
mysql mysql 5.1.31 sp1
mysql mysql 5.1.34 sp1
mysql mysql 5.1.37 sp1
mysql mysql 5.1.40 sp1
mysql mysql 5.1.43 sp1
mysql mysql 5.1.46 sp1
mysql mysql 5.5.1
mysql mysql 5.5.2
mysql mysql 5.5.3
mysql mysql 5.5.4
mysql mysql 5.1.49 sp1
mysql mysql 5.5.5
mysql mysql 5.5.8
oracle mysql 5.1.51
oracle mysql 5.1.52
oracle mysql 5.1.52 sp1
oracle mysql 5.1.53
oracle mysql 5.1.54
oracle mysql 5.1.55
oracle mysql 5.1.56
oracle mysql 5.1.57
oracle mysql 5.1.58
oracle mysql 5.1.59
oracle mysql 5.1.60
oracle mysql 5.1.61
oracle mysql 5.5.10
oracle mysql 5.5.11
oracle mysql 5.5.12
oracle mysql 5.5.13
oracle mysql 5.5.14
oracle mysql 5.5.15
oracle mysql 5.5.16
oracle mysql 5.5.17
oracle mysql 5.5.18
oracle mysql 5.5.19
oracle mysql 5.5.20
oracle mysql 5.5.21
mysql mysql 5.5.9
mysql mysql 5.5.7
mysql mysql 5.5.6
redhat enterprise linux 6
redhat enterprise linux 6
redhat enterprise linux desktop 6
redhat enterprise linux hpc node 6