CVE-2012-0553

Buffer overflow in yaSSL, as used in MySQL 5.1.x before 5.1.68 and 5.5.x before 5.5.28, has unspecified impact and attack vectors, a different vulnerability than CVE-2013-1492.

Published: 2013-03-28 Last update: 2026-04-29 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2012-0553 is rated Moderate Risk (61/100): CVSS High severity, with medium exploitation likelihood (EPSS 2.60%). Core evidence: EPSS rose +1.89% over the last day, indicating growing attacker interest. Mandatory action: Review affected assets and schedule remediation.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Exploit prediction scoring system (EPSS) score for CVE-2012-0553

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-15 0.71% 2.60% +1.89%
2 2025-12-28 0.49% 0.71% +0.23%
3 2025-12-27 0.49%

Full EPSS history (12 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2012-0553

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
7.5 2.0 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:P)
Partial confidentiality impact.
Integrity impact (I:P)
Partial integrity impact.
Availability impact (A:P)
Partial availability impact.
10.0 6.4 [email protected]

Weakness enumeration for CVE-2012-0553

OS Trackers for CVE-2012-0553

vendor priority summary link
gentoo high CVE-2012-0553: 1 GLSA(s) (201308-06), 1 atom(s) (dev-db/mysql); latest impact high. https://bugs.gentoo.org/buglist.cgi?quicksearch=CVE-2012-0553
redhat high https://access.redhat.com/security/cve/CVE-2012-0553
ubuntu medium CVE-2012-0553 medium priority: Ubuntu including 5 source packages (mysql-5.1, mysql-5.5, mysql-cluster-7.0, mysql-dfsg-5.0, mysql-dfsg-5.1), 35 status rows across 7 suites (hardy, lucid, oneiric, precise, quantal, raring, upstream): DNE 22, released 8, ignored 4, needs-triage 1. https://ubuntu.com/security/CVE-2012-0553

Affected software / configurations for CVE-2012-0553

Vendor Product Version Raw CPE
mysql mysql 5.1.5 cpe:2.3:a:mysql:mysql:5.1.5:*:*:*:*:*:*:*
mysql mysql 5.1.23 cpe:2.3:a:mysql:mysql:5.1.23:*:*:*:*:*:*:*
mysql mysql 5.1.31 cpe:2.3:a:mysql:mysql:5.1.31:*:*:*:*:*:*:*
mysql mysql 5.1.32 cpe:2.3:a:mysql:mysql:5.1.32:*:*:*:*:*:*:*
mysql mysql 5.1.34 cpe:2.3:a:mysql:mysql:5.1.34:*:*:*:*:*:*:*
mysql mysql 5.1.37 cpe:2.3:a:mysql:mysql:5.1.37:*:*:*:*:*:*:*
oracle mysql 5.1 cpe:2.3:a:oracle:mysql:5.1:*:*:*:*:*:*:*
oracle mysql 5.1.1 cpe:2.3:a:oracle:mysql:5.1.1:*:*:*:*:*:*:*
oracle mysql 5.1.2 cpe:2.3:a:oracle:mysql:5.1.2:*:*:*:*:*:*:*
oracle mysql 5.1.3 cpe:2.3:a:oracle:mysql:5.1.3:*:*:*:*:*:*:*
oracle mysql 5.1.4 cpe:2.3:a:oracle:mysql:5.1.4:*:*:*:*:*:*:*
oracle mysql 5.1.6 cpe:2.3:a:oracle:mysql:5.1.6:*:*:*:*:*:*:*
oracle mysql 5.1.7 cpe:2.3:a:oracle:mysql:5.1.7:*:*:*:*:*:*:*
oracle mysql 5.1.8 cpe:2.3:a:oracle:mysql:5.1.8:*:*:*:*:*:*:*
oracle mysql 5.1.9 cpe:2.3:a:oracle:mysql:5.1.9:*:*:*:*:*:*:*
oracle mysql 5.1.10 cpe:2.3:a:oracle:mysql:5.1.10:*:*:*:*:*:*:*
oracle mysql 5.1.11 cpe:2.3:a:oracle:mysql:5.1.11:*:*:*:*:*:*:*
oracle mysql 5.1.12 cpe:2.3:a:oracle:mysql:5.1.12:*:*:*:*:*:*:*
oracle mysql 5.1.13 cpe:2.3:a:oracle:mysql:5.1.13:*:*:*:*:*:*:*
oracle mysql 5.1.14 cpe:2.3:a:oracle:mysql:5.1.14:*:*:*:*:*:*:*
oracle mysql 5.1.15 cpe:2.3:a:oracle:mysql:5.1.15:*:*:*:*:*:*:*
oracle mysql 5.1.16 cpe:2.3:a:oracle:mysql:5.1.16:*:*:*:*:*:*:*
oracle mysql 5.1.17 cpe:2.3:a:oracle:mysql:5.1.17:*:*:*:*:*:*:*
oracle mysql 5.1.18 cpe:2.3:a:oracle:mysql:5.1.18:*:*:*:*:*:*:*
oracle mysql 5.1.19 cpe:2.3:a:oracle:mysql:5.1.19:*:*:*:*:*:*:*
oracle mysql 5.1.20 cpe:2.3:a:oracle:mysql:5.1.20:*:*:*:*:*:*:*
oracle mysql 5.1.21 cpe:2.3:a:oracle:mysql:5.1.21:*:*:*:*:*:*:*
oracle mysql 5.1.22 cpe:2.3:a:oracle:mysql:5.1.22:*:*:*:*:*:*:*
oracle mysql 5.1.23 cpe:2.3:a:oracle:mysql:5.1.23:a:*:*:*:*:*:*
oracle mysql 5.1.24 cpe:2.3:a:oracle:mysql:5.1.24:*:*:*:*:*:*:*
oracle mysql 5.1.25 cpe:2.3:a:oracle:mysql:5.1.25:*:*:*:*:*:*:*
oracle mysql 5.1.26 cpe:2.3:a:oracle:mysql:5.1.26:*:*:*:*:*:*:*
oracle mysql 5.1.27 cpe:2.3:a:oracle:mysql:5.1.27:*:*:*:*:*:*:*
oracle mysql 5.1.28 cpe:2.3:a:oracle:mysql:5.1.28:*:*:*:*:*:*:*
oracle mysql 5.1.29 cpe:2.3:a:oracle:mysql:5.1.29:*:*:*:*:*:*:*
oracle mysql 5.1.30 cpe:2.3:a:oracle:mysql:5.1.30:*:*:*:*:*:*:*
oracle mysql 5.1.31 cpe:2.3:a:oracle:mysql:5.1.31:sp1:*:*:*:*:*:*
oracle mysql 5.1.33 cpe:2.3:a:oracle:mysql:5.1.33:*:*:*:*:*:*:*
oracle mysql 5.1.34 cpe:2.3:a:oracle:mysql:5.1.34:sp1:*:*:*:*:*:*
oracle mysql 5.1.35 cpe:2.3:a:oracle:mysql:5.1.35:*:*:*:*:*:*:*
oracle mysql 5.1.36 cpe:2.3:a:oracle:mysql:5.1.36:*:*:*:*:*:*:*
oracle mysql 5.1.37 cpe:2.3:a:oracle:mysql:5.1.37:sp1:*:*:*:*:*:*
oracle mysql 5.1.38 cpe:2.3:a:oracle:mysql:5.1.38:*:*:*:*:*:*:*
oracle mysql 5.1.39 cpe:2.3:a:oracle:mysql:5.1.39:*:*:*:*:*:*:*
oracle mysql 5.1.40 cpe:2.3:a:oracle:mysql:5.1.40:*:*:*:*:*:*:*
oracle mysql 5.1.40 cpe:2.3:a:oracle:mysql:5.1.40:sp1:*:*:*:*:*:*
oracle mysql 5.1.41 cpe:2.3:a:oracle:mysql:5.1.41:*:*:*:*:*:*:*
oracle mysql 5.1.42 cpe:2.3:a:oracle:mysql:5.1.42:*:*:*:*:*:*:*
oracle mysql 5.1.43 cpe:2.3:a:oracle:mysql:5.1.43:*:*:*:*:*:*:*
oracle mysql 5.1.43 cpe:2.3:a:oracle:mysql:5.1.43:sp1:*:*:*:*:*:*
oracle mysql 5.1.44 cpe:2.3:a:oracle:mysql:5.1.44:*:*:*:*:*:*:*
oracle mysql 5.1.45 cpe:2.3:a:oracle:mysql:5.1.45:*:*:*:*:*:*:*
oracle mysql 5.1.46 cpe:2.3:a:oracle:mysql:5.1.46:*:*:*:*:*:*:*
oracle mysql 5.1.46 cpe:2.3:a:oracle:mysql:5.1.46:sp1:*:*:*:*:*:*
oracle mysql 5.1.47 cpe:2.3:a:oracle:mysql:5.1.47:*:*:*:*:*:*:*
oracle mysql 5.1.48 cpe:2.3:a:oracle:mysql:5.1.48:*:*:*:*:*:*:*
oracle mysql 5.1.49 cpe:2.3:a:oracle:mysql:5.1.49:*:*:*:*:*:*:*
oracle mysql 5.1.49 cpe:2.3:a:oracle:mysql:5.1.49:sp1:*:*:*:*:*:*
oracle mysql 5.1.50 cpe:2.3:a:oracle:mysql:5.1.50:*:*:*:*:*:*:*
oracle mysql 5.1.51 cpe:2.3:a:oracle:mysql:5.1.51:*:*:*:*:*:*:*
oracle mysql 5.1.52 cpe:2.3:a:oracle:mysql:5.1.52:*:*:*:*:*:*:*
oracle mysql 5.1.52 cpe:2.3:a:oracle:mysql:5.1.52:sp1:*:*:*:*:*:*
oracle mysql 5.1.53 cpe:2.3:a:oracle:mysql:5.1.53:*:*:*:*:*:*:*
oracle mysql 5.1.54 cpe:2.3:a:oracle:mysql:5.1.54:*:*:*:*:*:*:*
oracle mysql 5.1.55 cpe:2.3:a:oracle:mysql:5.1.55:*:*:*:*:*:*:*
oracle mysql 5.1.56 cpe:2.3:a:oracle:mysql:5.1.56:*:*:*:*:*:*:*
oracle mysql 5.1.57 cpe:2.3:a:oracle:mysql:5.1.57:*:*:*:*:*:*:*
oracle mysql 5.1.58 cpe:2.3:a:oracle:mysql:5.1.58:*:*:*:*:*:*:*
oracle mysql 5.1.59 cpe:2.3:a:oracle:mysql:5.1.59:*:*:*:*:*:*:*
oracle mysql 5.1.60 cpe:2.3:a:oracle:mysql:5.1.60:*:*:*:*:*:*:*
oracle mysql 5.1.61 cpe:2.3:a:oracle:mysql:5.1.61:*:*:*:*:*:*:*
oracle mysql 5.1.62 cpe:2.3:a:oracle:mysql:5.1.62:*:*:*:*:*:*:*
oracle mysql 5.1.63 cpe:2.3:a:oracle:mysql:5.1.63:*:*:*:*:*:*:*
oracle mysql 5.1.64 cpe:2.3:a:oracle:mysql:5.1.64:*:*:*:*:*:*:*
oracle mysql 5.1.65 cpe:2.3:a:oracle:mysql:5.1.65:*:*:*:*:*:*:*
oracle mysql 5.1.66 cpe:2.3:a:oracle:mysql:5.1.66:*:*:*:*:*:*:*
oracle mysql 5.1.67 cpe:2.3:a:oracle:mysql:5.1.67:*:*:*:*:*:*:*
oracle mysql 5.5.0 cpe:2.3:a:oracle:mysql:5.5.0:*:*:*:*:*:*:*
oracle mysql 5.5.1 cpe:2.3:a:oracle:mysql:5.5.1:*:*:*:*:*:*:*
oracle mysql 5.5.2 cpe:2.3:a:oracle:mysql:5.5.2:*:*:*:*:*:*:*

References for CVE-2012-0553

cvelogic Threat Intelligence