« List of all CVEs

CVE-2019-2636

Published: 4/23/2019 Last updated: 10/2/2024 Reserved: 12/14/2018

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Group Replication Plugin). Supported versions that are affected are 8.0.15 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via MySQL Procotol to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).

CNA assigner: oracle (43595867-4340-4103-b7a2-9a5208d29a85) Requested by: n/a

Opam packages affected (1)

conf-mysql

Products affected (2)

Product Vendor Version
MySQL Server Oracle Corporation < 8971fd61210d75fd2af225621cd2fcc87eb1847c
MySQL Server Oracle Corporation < 0c84204cf0bbe89e454a5caccc6a908bc7db1542

References (16)