Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-21209

Опубликовано: 15 окт. 2024
Источник: ubuntu
Приоритет: low
CVSS3: 2

Описание

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.1 Base Score 2.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N).

РелизСтатусПримечание
devel

not-affected

8.4.x+ only
esm-apps/noble

not-affected

8.4.x+ only
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

not-affected

8.4.x+ only
oracular

not-affected

8.4.x+ only
upstream

not-affected

8.4.x+ only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

not-affected

8.4.x+ only
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

upstream

not-affected

8.4.x+ only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

8.4.x+ only
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

upstream

not-affected

8.4.x+ only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/focal

not-affected

8.4.x+ only
focal

ignored

end of standard support, was ignored [no more upstream support]
jammy

DNE

noble

DNE

oracular

DNE

upstream

not-affected

8.4.x+ only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/jammy

not-affected

8.4.x+ only
esm-infra/focal

DNE

focal

DNE

jammy

not-affected

8.4.x+ only
noble

DNE

oracular

DNE

upstream

not-affected

8.4.x+ only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

ignored

see notes
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

trusty/esm

ignored

end of ESM support, was ignored [see notes]
upstream

not-affected

8.4.x+ only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/bionic

not-affected

8.4.x+ only
esm-infra/focal

DNE

esm-infra/xenial

ignored

see notes
focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

upstream

not-affected

8.4.x+ only

Показывать по

РелизСтатусПримечание
devel

not-affected

8.4.x+ only
esm-infra/focal

not-affected

8.4.x+ only
focal

not-affected

8.4.x+ only
jammy

not-affected

8.4.x+ only
noble

not-affected

8.4.x+ only
oracular

not-affected

8.4.x+ only
upstream

not-affected

debian: Only affects 8.4 and later

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

not-affected

8.4.x+ only
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

upstream

not-affected

8.4.x+ only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

not-affected

8.4.x+ only
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

upstream

not-affected

8.4.x+ only

Показывать по

2 Low

CVSS3

Связанные уязвимости

CVSS3: 2
redhat
больше 1 года назад

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.1 Base Score 2.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N).

CVSS3: 2
nvd
больше 1 года назад

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.1 Base Score 2.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N).

CVSS3: 2
debian
больше 1 года назад

Vulnerability in the MySQL Client product of Oracle MySQL (component: ...

CVSS3: 2
github
больше 1 года назад

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Client accessible data. CVSS 3.1 Base Score 2.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N).

CVSS3: 2
fstec
больше 1 года назад

Уязвимость компонента Client: mysqldump клиента системы управления базами данных MySQL, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

2 Low

CVSS3

Уязвимость CVE-2024-21209