CVE-2012-3158 describes an unspecified vulnerability in the Protocol component of Oracle MySQL Server versions 5.1.64 and earlier, and 5.5.26 and earlier, impacting products from vendors like Canonical, Debian, MariaDB, Oracle, and Red Hat. This vulnerability carries a CVSS score of 7.5, indicating high severity with potential for remote attackers to compromise confidentiality, integrity, and availability with low attack complexity. While community discussion is notably high, there is no evidence of active exploitation, nor are there known public exploits in Metasploit, Nuclei, or ExploitDB.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 5.1.0, <= 5.1.64CPE matchmatch criteria | cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:* | ||
>= 5.5.0, <= 5.5.26CPE matchmatch criteria | cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:* | ||
>= 5.1.0, < 5.1.66CPE matchmatch criteria | cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* | ||
>= 5.5.0, < 5.5.27CPE matchmatch criteria | cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* | ||
6.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.