~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
PublicDateAtUSN: 2014-10-15
Candidate: CVE-2014-6495
PublicDate: 2014-10-15
References: 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6495
 http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html
 http://www.ubuntu.com/usn/usn-2384-1
Description:
 Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and
 5.6.19 and earlier, allows remote attackers to affect availability via
 vectors related to SERVER:SSL:yaSSL.
Ubuntu-Description: 
Notes:
 mdeslaur> no indication that 5.1 is vulnerable, and no details, so
 mdeslaur> marking as not-affected for now.
Bugs: 
Priority: medium
Discovered-by:
Assigned-to: 

Patches_mysql-dfsg-5.1:
upstream_mysql-dfsg-5.1: needs-triage
lucid_mysql-dfsg-5.1: not-affected
precise_mysql-dfsg-5.1: DNE
trusty_mysql-dfsg-5.1: DNE
utopic_mysql-dfsg-5.1: DNE
vivid_mysql-dfsg-5.1: DNE
wily_mysql-dfsg-5.1: DNE
devel_mysql-dfsg-5.1: DNE

Patches_mysql-5.5:
upstream_mysql-5.5: released (5.5.39)
lucid_mysql-5.5: DNE
precise_mysql-5.5: released (5.5.40-0ubuntu0.12.04.1)
trusty_mysql-5.5: released (5.5.40-0ubuntu0.14.04.1)
utopic_mysql-5.5: not-affected (5.5.40-0ubuntu1)
vivid_mysql-5.5: DNE
wily_mysql-5.5: DNE
devel_mysql-5.5: DNE

Patches_mysql-5.6:
upstream_mysql-5.6: released (5.6.20)
lucid_mysql-5.6: DNE
precise_mysql-5.6: DNE
trusty_mysql-5.6: released (5.6.27-0ubuntu0.14.04.1)
utopic_mysql-5.6: ignored (reached end-of-life)
vivid_mysql-5.6: not-affected (5.6.23-1~exp1~ubuntu4)
wily_mysql-5.6: not-affected (5.6.23-1~exp1~ubuntu4)
devel_mysql-5.6: not-affected (5.6.23-1~exp1~ubuntu4)