CVE Vulnerabilities

CVE-2020-14771

Published: Oct 21, 2020 | Modified: Apr 12, 2022
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:N/A:P
RedHat/V2
RedHat/V3
2.2 LOW
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L
Ubuntu
MEDIUM

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: LDAP Auth). Supported versions that are affected are 5.7.31 and prior and 8.0.21 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server. CVSS 3.1 Base Score 2.2 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L).

Affected Software

Name Vendor Start Version End Version
Mysql Oracle 5.7.0 (including) 5.7.31 (including)
Mysql Oracle 8.0.0 (including) 8.0.21 (including)
Mariadb-10.0 Ubuntu xenial *
Mariadb-10.3 Ubuntu groovy *
Mariadb-5.5 Ubuntu trusty *
Mysql-5.5 Ubuntu esm-infra-legacy/trusty *
Mysql-5.5 Ubuntu precise/esm *
Mysql-5.5 Ubuntu trusty *
Mysql-5.5 Ubuntu trusty/esm *
Mysql-5.6 Ubuntu trusty *
Mysql-5.7 Ubuntu bionic *
Mysql-5.7 Ubuntu upstream *
Mysql-5.7 Ubuntu xenial *
Mysql-8.0 Ubuntu devel *
Mysql-8.0 Ubuntu focal *
Mysql-8.0 Ubuntu groovy *
Mysql-8.0 Ubuntu hirsute *
Mysql-8.0 Ubuntu impish *
Mysql-8.0 Ubuntu jammy *
Mysql-8.0 Ubuntu kinetic *
Mysql-8.0 Ubuntu lunar *
Mysql-8.0 Ubuntu mantic *
Mysql-8.0 Ubuntu noble *
Mysql-8.0 Ubuntu upstream *
Percona-server-5.6 Ubuntu esm-apps/xenial *
Percona-server-5.6 Ubuntu xenial *
Percona-xtradb-cluster-5.5 Ubuntu trusty *
Percona-xtradb-cluster-5.6 Ubuntu esm-apps/xenial *
Percona-xtradb-cluster-5.6 Ubuntu xenial *

References