Bug 867230 (CVE-2012-3167) - CVE-2012-3167 mysql: unspecified DoS vulnerability related to Server Full Text Search (CPU Oct 2012)
Summary: CVE-2012-3167 mysql: unspecified DoS vulnerability related to Server Full Tex...
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2012-3167
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 871813 871814
Blocks: 867241 mysql-cpu-2012-10
TreeView+ depends on / blocked
 
Reported: 2012-10-17 06:04 UTC by Kurt Seifried
Modified: 2021-02-17 08:29 UTC (History)
4 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2013-11-06 18:46:03 UTC
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2012:1462 0 normal SHIPPED_LIVE Important: mysql security update 2012-11-15 01:51:48 UTC

Description Kurt Seifried 2012-10-17 06:04:21 UTC
Common Vulnerabilities and Exposures assigned an identifier CVE-2012-3167 to
the following vulnerability:

Name: CVE-2012-3167
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3167
Assigned: 20120606
Reference: http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html

Unspecified vulnerability in the MySQL Server component in Oracle
MySQL 5.1.63 and earlier, and 5.5.25 and earlier, allows remote
authenticated users to affect availability via unknown vectors related
to Server Full Text Search.

Comment 2 errata-xmlrpc 2012-11-14 20:56:42 UTC
This issue has been addressed in following products:

  Red Hat Enterprise Linux 6

Via RHSA-2012:1462 https://rhn.redhat.com/errata/RHSA-2012-1462.html

Comment 3 Vincent Danen 2013-11-06 18:46:03 UTC
Statement:

On Red Hat Enterprise Linux 5.10, new MySQL 5.5 packages are available which are not vulnerable to this issue.  Future updates for MySQL 5.0 will no longer be made available (mysql-5.0.* and related packages); security advisories will be provided only for MySQL 5.5.  Please refer to https://rhn.redhat.com/errata/RHEA-2013-1330.html for further information.


Note You need to log in before you can comment on or make changes to this bug.