10
CVSSv2

CVE-2016-0639

Published: 21/04/2016 Updated: 19/02/2019
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Unspecified vulnerability in Oracle MySQL 5.6.29 and previous versions and 5.7.11 and previous versions allows remote malicious users to affect confidentiality, integrity, and availability via vectors related to Pluggable Authentication.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat enterprise linux 7.0

redhat enterprise linux 6.0

oracle mysql

Vendor Advisories

Debian Bug report logs - #821094 Security fixes from the April 2016 CPU Package: src:mysql-56; Maintainer for src:mysql-56 is (unknown); Reported by: "Norvald H Ryeng" <norvaldryeng@oraclecom> Date: Fri, 15 Apr 2016 12:03:01 UTC Severity: grave Tags: fixed-upstream, security, upstream Found in version mysql-56/562 ...
Several security issues were fixed in MySQL ...
Several security issues were fixed in MySQL ...
A double-free flaw was found in the way OpenSSL parsed certain malformed DSA (Digital Signature Algorithm) private keys An attacker could create specially crafted DSA private keys that, when processed by an application compiled against OpenSSL, could cause the application to crash (CVE-2016-0705) The ssl_verify_server_cert function in sql-common/ ...
Unspecified vulnerability in Oracle MySQL 5629 and earlier and 5711 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Pluggable Authentication ...