Vulnerability Name:

CVE-2015-2641 (CCN-104772)

Assigned:2015-07-14
Published:2015-07-14
Updated:2018-01-05
Summary:Unspecified vulnerability in Oracle MySQL Server 5.6.24 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Security : Privileges.
CVSS v3 Severity:2.6 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): High
Privileges Required (PR): Low
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:3.5 Low (CVSS v2 Vector: AV:N/AC:M/Au:S/C:N/I:N/A:P)
2.6 Low (Temporal CVSS v2 Vector: AV:N/AC:M/Au:S/C:N/I:N/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
3.5 Low (CCN CVSS v2 Vector: AV:N/AC:M/Au:S/C:N/I:N/A:P)
2.6 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:S/C:N/I:N/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
Vulnerability Type:CWE-noinfo
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2015-2641

Source: SUSE
Type: UNKNOWN
openSUSE-SU-2015:1629

Source: REDHAT
Type: UNKNOWN
RHSA-2015:1630

Source: REDHAT
Type: UNKNOWN
RHSA-2015:1646

Source: CCN
Type: IBM Security Bulletin 1966735
vulnerabilities in OpenSource Oracle MySQL Server affect IBM Security Guardium

Source: CCN
Type: Oracle Critical Patch Update - July 2015
Oracle Critical Patch Update - July 2015

Source: CONFIRM
Type: Patch, Vendor Advisory
http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html

Source: BID
Type: UNKNOWN
75815

Source: CCN
Type: BID-75815
Oracle MySQL Server CVE-2015-2641 Remote Security Vulnerability

Source: SECTRACK
Type: UNKNOWN
1032911

Source: UBUNTU
Type: UNKNOWN
USN-2674-1

Source: XF
Type: UNKNOWN
oracle-cpujuly2015-cve20152641(104772)

Source: GENTOO
Type: UNKNOWN
GLSA-201610-06

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2015-2641

Vulnerable Configuration:Configuration 1:
  • cpe:/a:oracle:mysql:*:*:*:*:*:*:*:* (Version <= 5.6.24)

  • Configuration 2:
  • cpe:/o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:oracle:mysql:5.6.24:*:*:*:*:*:*:*
  • AND
  • cpe:/a:ibm:security_guardium:9.0:*:*:*:*:*:*:*
  • OR cpe:/a:ibm:security_guardium:9.1:*:*:*:*:*:*:*
  • OR cpe:/a:ibm:security_guardium:10.0:*:*:*:*:*:*:*
  • OR cpe:/a:ibm:security_guardium:9.5:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20152641
    V
    CVE-2015-2641
    2022-06-30
    oval:org.opensuse.security:def:112714
    P
    libmysql56client18-32bit-5.6.34-1.1 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:34683
    P
    Security update for ghostscript (Moderate)
    2022-01-14
    oval:org.opensuse.security:def:34682
    P
    Security update for the Linux Kernel (Important)
    2022-01-14
    oval:org.opensuse.security:def:30169
    P
    Security update for MozillaFirefox (Important) (in QA)
    2022-01-14
    oval:org.opensuse.security:def:106187
    P
    Security update for libvirt (Important) (in QA)
    2021-12-30
    oval:org.opensuse.security:def:34620
    P
    Security update for kernel-firmware (Low)
    2021-12-30
    oval:org.opensuse.security:def:55986
    P
    Security update for xorg-x11-server (Important)
    2021-12-14
    oval:org.opensuse.security:def:56102
    P
    Security update for mozilla-nss (Important)
    2021-12-06
    oval:org.opensuse.security:def:55983
    P
    Security update for openssh (Important)
    2021-12-06
    oval:org.opensuse.security:def:34595
    P
    Security update for postgresql10 (Important)
    2021-11-22
    oval:org.opensuse.security:def:31291
    P
    Security update for util-linux (Moderate)
    2021-10-19
    oval:org.opensuse.security:def:55258
    P
    Security update for MozillaFirefox (Important)
    2021-10-15
    oval:org.opensuse.security:def:34556
    P
    Security update for apache2 (Important)
    2021-10-06
    oval:org.opensuse.security:def:30255
    P
    Security update for apache2 (Important)
    2021-10-06
    oval:org.opensuse.security:def:31281
    P
    Security update for glibc (Moderate)
    2021-10-06
    oval:org.opensuse.security:def:56078
    P
    Security update for apache2 (Important)
    2021-10-06
    oval:org.opensuse.security:def:31253
    P
    Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP3) (Important)
    2021-08-25
    oval:org.opensuse.security:def:32167
    P
    Security update for openssl (Important)
    2021-08-24
    oval:org.opensuse.security:def:30112
    P
    Security update for MozillaFirefox (Important)
    2021-08-17
    oval:org.opensuse.security:def:32128
    P
    Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP3) (Important)
    2021-06-18
    oval:org.opensuse.security:def:36219
    P
    libsoup-2_4-1-2.32.2-4.13.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36177
    P
    libarchive2-2.5.5-5.19 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:55909
    P
    Security update for MozillaFirefox (Important)
    2021-06-08
    oval:org.opensuse.security:def:57452
    P
    Security update for libwebp (Critical)
    2021-06-02
    oval:org.opensuse.security:def:34449
    P
    Security update for qemu (Important)
    2021-06-02
    oval:org.opensuse.security:def:56021
    P
    Security update for libxml2 (Important)
    2021-05-19
    oval:org.opensuse.security:def:55878
    P
    Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP2) (Important)
    2021-04-12
    oval:org.opensuse.security:def:34048
    P
    Security update for MozillaFirefox (Important)
    2021-03-31
    oval:org.opensuse.security:def:28958
    P
    Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP2) (Important)
    2021-03-17
    oval:org.opensuse.security:def:54770
    P
    Security update for openldap2 (Important)
    2021-03-03
    oval:org.opensuse.security:def:30024
    P
    Security update for jasper (Important)
    2021-02-16
    oval:org.opensuse.security:def:31337
    P
    Security update for python (Important)
    2021-02-11
    oval:org.opensuse.security:def:57547
    P
    Security update for python (Important)
    2021-02-11
    oval:org.opensuse.security:def:54747
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:34507
    P
    Security update for java-11-openjdk (Important)
    2021-02-02
    oval:org.opensuse.security:def:28923
    P
    Security update for MozillaFirefox (Important)
    2021-01-29
    oval:org.opensuse.security:def:34664
    P
    Security update for the Linux Kernel (Moderate)
    2021-01-12
    oval:org.opensuse.security:def:54748
    P
    Security update for java-1_8_0-ibm (Moderate)
    2021-01-05
    oval:org.opensuse.security:def:33912
    P
    Security update for flac (Moderate)
    2021-01-04
    oval:org.opensuse.security:def:54741
    P
    Security update for java-1_7_1-ibm (Moderate)
    2021-01-04
    oval:org.opensuse.security:def:35539
    P
    emacs-22.3-4.32.4 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:30673
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55148
    P
    icu on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35161
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:27545
    P
    python-imaging on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33817
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:26594
    P
    libopensc2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27766
    P
    Security update for jasper
    2020-12-01
    oval:org.opensuse.security:def:30513
    P
    Security update for freeradius
    2020-12-01
    oval:org.opensuse.security:def:26827
    P
    sysstat on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27584
    P
    xorg-x11-libXfixes-devel-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31038
    P
    Security update for kdebase4-workspace (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35495
    P
    Security update for policycoreutils (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54601
    P
    libsmi on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34145
    P
    Security update for openldap2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:27020
    P
    python-pam on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28072
    P
    Security update for freeradius-server (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27112
    P
    e2fsprogs on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28086
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31425
    P
    Security update for php53 (Important)
    2020-12-01
    oval:org.opensuse.security:def:35302
    P
    Security update for libxslt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27340
    P
    yast2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55424
    P
    yast2-core on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27804
    P
    Security update for libpng
    2020-12-01
    oval:org.opensuse.security:def:30672
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54910
    P
    libpng15-15 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35071
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:27506
    P
    libxml on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28285
    P
    Security update for mysql (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26466
    P
    Security update for irssi (Important)
    2020-12-01
    oval:org.opensuse.security:def:27682
    P
    Security update for Xen
    2020-12-01
    oval:org.opensuse.security:def:30464
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:27520
    P
    netatalk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30981
    P
    Security update for icu (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35468
    P
    Security update for php53 (Important)
    2020-12-01
    oval:org.opensuse.security:def:28789
    P
    Security update for mysql (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54579
    P
    libnewt0_52 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26967
    P
    libpython2_6-1_0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28058
    P
    Security update for dhcp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27031
    P
    squid3 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27935
    P
    Security update for GraphicsMagick (Important)
    2020-12-01
    oval:org.opensuse.security:def:31386
    P
    Security update for openvpn-openssl1 (Important)
    2020-12-01
    oval:org.opensuse.security:def:56271
    P
    Security update for audiofile (Low)
    2020-12-01
    oval:org.opensuse.security:def:27339
    P
    xterm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29892
    P
    Security update for Kerberos 5
    2020-12-01
    oval:org.opensuse.security:def:27166
    P
    kvm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35014
    P
    Security update for gpg2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27457
    P
    liblcms-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28241
    P
    Security update for libvorbis (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26402
    P
    Security update for irssi (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27625
    P
    Security update for java-1_4_2-ibm
    2020-12-01
    oval:org.opensuse.security:def:30409
    P
    Security update for xorg-x11-libX11 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27509
    P
    libyaml-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30890
    P
    Security update for Mozilla Firefox
    2020-12-01
    oval:org.opensuse.security:def:55593
    P
    Security update for coreutils (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35429
    P
    Security update for openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28754
    P
    Security update for OpenSSL
    2020-12-01
    oval:org.opensuse.security:def:54578
    P
    libneon27 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26816
    P
    radvd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28019
    P
    Security update for bash (Low)
    2020-12-01
    oval:org.opensuse.security:def:30615
    P
    Security update for systemtap
    2020-12-01
    oval:org.opensuse.security:def:26903
    P
    ghostscript-fonts-other on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27851
    P
    Security update for pam
    2020-12-01
    oval:org.opensuse.security:def:56190
    P
    Security update for java-1_8_0-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:29819
    P
    Security update for IBM Java 1.6.0
    2020-12-01
    oval:org.opensuse.security:def:55152
    P
    java-1_7_0-openjdk-plugin on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27122
    P
    fetchmail on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34914
    P
    Security update for ed (Low)
    2020-12-01
    oval:org.opensuse.security:def:27404
    P
    fuse-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28227
    P
    Security update for libssh2_org (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:57378
    P
    Security update for java-1_7_0-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:26391
    P
    Security update for MozillaThunderbird (Important)
    2020-12-01
    oval:org.opensuse.security:def:27543
    P
    python-crypto on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27508
    P
    libxslt-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30758
    P
    Security update for apache2-mod_jk (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55427
    P
    zoo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35380
    P
    Security update for ntp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27603
    P
    Security update for Mono
    2020-12-01
    oval:org.opensuse.security:def:33829
    P
    Security update for GnuTLS
    2020-12-01
    oval:org.opensuse.security:def:26732
    P
    kvm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27970
    P
    Security update for ImageMagick (Important)
    2020-12-01
    oval:org.opensuse.security:def:30571
    P
    Security update for libxslt
    2020-12-01
    oval:org.opensuse.security:def:57621
    P
    Security update for mysql (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26839
    P
    wget on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27794
    P
    Security update for libgcrypt
    2020-12-01
    oval:org.opensuse.security:def:56152
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27839
    P
    Security update for mysql (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29808
    P
    Security update for jakarta-commons-fileupload
    2020-12-01
    oval:org.opensuse.security:def:54979
    P
    perl-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34291
    P
    Security update for python-pam
    2020-12-01
    oval:org.opensuse.security:def:27108
    P
    dbus-1-glib on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34778
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:27253
    P
    openssh on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28188
    P
    Security update for krb5 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31490
    P
    Security update for python (Important)
    2020-12-01
    oval:org.opensuse.security:def:26390
    P
    Security update for ark (Low)
    2020-12-01
    oval:org.opensuse.security:def:27415
    P
    gstreamer-0_10-plugins-base-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55817
    P
    Security update for systemd (Important)
    2020-12-01
    oval:org.opensuse.security:def:30684
    P
    Security update for LibVNCServer (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55321
    P
    libzip2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35321
    P
    Security update for microcode_ctl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27559
    P
    rubygem-i18n-0_6 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33818
    P
    Security update for glibc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26675
    P
    bzip2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27917
    P
    Security update for xorg-x11-libX11 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30552
    P
    Security update for lcms
    2020-12-01
    oval:org.opensuse.security:def:26828
    P
    system-config-printer on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27712
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:31125
    P
    Security update for kvm (Important)
    2020-12-01
    oval:org.opensuse.security:def:29807
    P
    Security update for jakarta-commons-collections (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34202
    P
    Security update for perl-Archive-Zip (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27069
    P
    MozillaFirefox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28116
    P
    Security update for gnutls (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34694
    P
    Security update for xorg-x11-libXfixes
    2020-12-01
    oval:org.opensuse.security:def:27169
    P
    libFLAC++6 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28139
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:31446
    P
    Security update for popt
    2020-12-01
    oval:org.opensuse.security:def:35343
    P
    Security update for mysql (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27351
    P
    openvpn-openssl1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55709
    P
    Security update for openssl (Important)
    2020-12-01
    oval:org.opensuse.security:def:28276
    P
    Security update for mysql (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:80086
    P
    Security update for mysql (Moderate)
    2015-09-22
    oval:org.opensuse.security:def:80255
    P
    Security update for mysql (Moderate)
    2015-09-22
    oval:com.ubuntu.artful:def:20152641000
    V
    CVE-2015-2641 on Ubuntu 17.10 (artful) - medium.
    2015-07-16
    oval:com.ubuntu.precise:def:20152641000
    V
    CVE-2015-2641 on Ubuntu 12.04 LTS (precise) - medium.
    2015-07-16
    oval:com.ubuntu.xenial:def:201526410000000
    V
    CVE-2015-2641 on Ubuntu 16.04 LTS (xenial) - medium.
    2015-07-16
    oval:com.ubuntu.trusty:def:20152641000
    V
    CVE-2015-2641 on Ubuntu 14.04 LTS (trusty) - medium.
    2015-07-16
    oval:com.ubuntu.xenial:def:20152641000
    V
    CVE-2015-2641 on Ubuntu 16.04 LTS (xenial) - medium.
    2015-07-16
    BACK
    oracle mysql *
    canonical ubuntu linux 12.04
    canonical ubuntu linux 14.04
    canonical ubuntu linux 14.10
    canonical ubuntu linux 15.04
    oracle mysql 5.6.24
    ibm security guardium 9.0
    ibm security guardium 9.1
    ibm security guardium 10.0
    ibm security guardium 9.5