1.7
CVSSv2

CVE-2016-0609

Published: 21/01/2016 Updated: 27/12/2019
CVSS v2 Base Score: 1.7 | Impact Score: 2.9 | Exploitability Score: 3.2
VMScore: 152
Vector: AV:N/AC:H/Au:M/C:N/I:N/A:P

Vulnerability Summary

Unspecified vulnerability in Oracle MySQL 5.5.46 and previous versions, 5.6.27 and previous versions, and 5.7.9 and MariaDB prior to 5.5.47, 10.0.x prior to 10.0.23, and 10.1.x prior to 10.1.10 allows remote authenticated users to affect availability via unknown vectors related to privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle linux 7

redhat enterprise linux 7.0

redhat enterprise linux 6.0

debian debian linux 8.0

oracle solaris 11.3

redhat enterprise linux server aus 7.2

redhat enterprise linux workstation 7.0

redhat enterprise linux server 7.0

redhat enterprise linux hpc node 7.0

redhat enterprise linux desktop 7.0

redhat enterprise linux hpc node eus 7.2

redhat enterprise linux server eus 7.2

opensuse opensuse 13.2

opensuse leap 42.1

canonical ubuntu linux 15.04

canonical ubuntu linux 14.04

canonical ubuntu linux 12.04

canonical ubuntu linux 15.10

mariadb mariadb

oracle mysql

Vendor Advisories

Several security issues were fixed in MySQL ...
Debian Bug report logs - #811443 mysql-56: Multiple security fixes from the January 2016 CPU Package: src:mysql-56; Maintainer for src:mysql-56 is (unknown); Reported by: "Norvald H Ryeng" <norvaldryeng@oraclecom> Date: Mon, 18 Jan 2016 23:36:02 UTC Severity: grave Tags: fixed-upstream, security, upstream Found in v ...
Debian Bug report logs - #811428 mysql-55: Multiple security fixes from the January 2016 CPU Package: src:mysql-55; Maintainer for src:mysql-55 is Debian MySQL Maintainers <pkg-mysql-maint@listsaliothdebianorg>; Reported by: "Norvald H Ryeng" <norvaldryeng@oraclecom> Date: Mon, 18 Jan 2016 20:33:07 UTC Sever ...
Several issues have been discovered in the MariaDB database server The vulnerabilities are addressed by upgrading MariaDB to the new upstream version 10023 Please see the MariaDB 100 Release Notes for further details: mariadbcom/kb/en/mariadb/mariadb-10023-release-notes/ For the stable distribution (jessie), these problems have been ...
It was found that the MariaDB client library did not properly check host names against server identities noted in the X509 certificates when establishing secure connections using TLS/SSL A man-in-the-middle attacker could possibly use this flaw to impersonate a server to a client (CVE-2016-2047) Unspecified vulnerability in Oracle MySQL 5546 a ...
wolfSSL (formerly CyaSSL) before 368 does not properly handle faults associated with the Chinese Remainder Theorem (CRT) process when allowing ephemeral key exchange without low memory optimizations on a server, which makes it easier for remote attackers to obtain private RSA keys by capturing TLS handshakes, also known as a Lenstra attack (CVE- ...
Unspecified vulnerability in Oracle MySQL 5546 and earlier, 5627 and earlier, and 579 and MariaDB before 5547, 100x before 10023, and 101x before 10110 allows remote authenticated users to affect availability via unknown vectors related to privileges ...