Know every vulnerabilitybefore it knows you.
DevGuard continuously monitors your dependencies and alerts you when CVEs like this one affect your stack — with real-time threat intelligence built for developers.
- Feiten
Oracle heeft kwetsbaarheden verholpen in MySQL.
- Interpretaties
Een kwaadwillende kan de kwetsbaarheden misbruiken om een Denial-of-Service te veroorzaken, of om toegang te krijgen tot gevoelige gegevens in de database en deze mogelijk te manipuleren.
- Oplossingen
Oracle heeft updates uitgebracht om de kwetsbaarheden te verhelpen. Zie bijgevoegde referenties voor meer informatie.
- Kans
medium
- Schade
high
- CWE-390
Detection of Error Condition Without Action
- CWE-130
Improper Handling of Length Parameter Inconsistency
- CWE-345
Insufficient Verification of Data Authenticity
- CWE-190
Integer Overflow or Wraparound
- CWE-125
Out-of-bounds Read
- CWE-404
Improper Resource Shutdown or Release
- CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
- CWE-400
Uncontrolled Resource Consumption
- CWE-770
Allocation of Resources Without Limits or Throttling
- CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
- CWE-122
Heap-based Buffer Overflow
- CWE-20
Improper Input Validation
Continuously monitor your dependencies and get alerted when vulnerabilities like this one affect your stack.
Checkout DevGuard