Input validation error in mysql - CVE-2011-2262
Published: January 19, 2012 / Updated: August 11, 2020
Vulnerability identifier: #VU44402
CSH Severity: Medium
CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2011-2262
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vendor: Google
Affected software:
mysql
mysql
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to perform service disruption.
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote attackers to affect availability via unknown vectors.
How to mitigate CVE-2011-2262
Install update from vendor's website.
Sources
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=659687
- http://secunia.com/advisories/48250
- http://secunia.com/advisories/53372
- http://security.gentoo.org/glsa/glsa-201308-06.xml
- http://www.debian.org/security/2012/dsa-2429
- http://www.oracle.com/technetwork/topics/security/cpujan2012-366304.html
- http://www.ubuntu.com/usn/USN-1397-1