{
  "threat_severity" : "Important",
  "public_date" : "2012-10-16T00:00:00Z",
  "bugzilla" : {
    "description" : "mysql: unspecified vulnerability related to the MySQL Protocol (CPU Oct 2012)",
    "id" : "867213",
    "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=867213"
  },
  "cvss" : {
    "cvss_base_score" : "7.5",
    "cvss_scoring_vector" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
    "status" : "verified"
  },
  "details" : [ "Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Protocol." ],
  "affected_release" : [ {
    "product_name" : "Red Hat Enterprise Linux 6",
    "release_date" : "2012-11-14T00:00:00Z",
    "advisory" : "RHSA-2012:1462",
    "cpe" : "cpe:/o:redhat:enterprise_linux:6",
    "package" : "mysql-0:5.1.66-1.el6_3"
  } ],
  "package_state" : [ {
    "product_name" : "Red Hat Enterprise Linux 5",
    "fix_state" : "Under investigation",
    "package_name" : "mysql",
    "cpe" : "cpe:/o:redhat:enterprise_linux:5"
  } ],
  "references" : [ "https://www.cve.org/CVERecord?id=CVE-2012-3158\nhttps://nvd.nist.gov/vuln/detail/CVE-2012-3158" ],
  "name" : "CVE-2012-3158",
  "csaw" : false
}