Red Hat Bugzilla – Bug 1053366
CVE-2013-5882 mysql: unspecified DoS related to Stored Procedure subcomponent (CPU Jan 2014)
Last modified: 2015-08-19 04:33:37 EDT
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Stored Procedure). Supported versions that are affected are 5.6.13 and earlier. Easily exploitable vulnerability allows successful authenticated network attacks via multiple protocols. Successful attack of this vulnerability can result in unauthorized Operating System hang or frequently repeatable crash (complete DOS). External References: http://www.oracle.com/technetwork/topics/security/cpujan2014verbose-1972951.html#MSQL
Upstream data suggests that this issue only affects the version of MySQL 5.6.13 and earlier. This issue does not affect the version of mysql as shipped with Red Hat Enterprise Linux 5 and 6. This issue does not affect the version of community-mysql and mariadb as shipped with Fedora-19 and Fedora-20
Statement: Not Vulnerable. This issue does not affect the version of mysql55-mysql package as shipped with Red Hat Enterprise Linux 5. This issue does not affect the version of mysql as shipped with Red Hat Enterprise Linux 6.