4.7
CVSSv3

CVE-2016-0642

Published: 21/04/2016 Updated: 29/08/2022
CVSS v2 Base Score: 4.3 | Impact Score: 4.9 | Exploitability Score: 5.5
CVSS v3 Base Score: 4.7 | Impact Score: 4.2 | Exploitability Score: 0.5
VMScore: 383
Vector: AV:N/AC:M/Au:M/C:N/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in Oracle MySQL 5.5.48 and previous versions, 5.6.29 and previous versions, and 5.7.11 and previous versions allows local users to affect integrity and availability via vectors related to Federated.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

oracle mysql

suse linux enterprise server 11

suse linux enterprise software development kit 12

suse linux enterprise server 12

suse linux enterprise software development kit 11

suse linux enterprise debuginfo 11

suse linux enterprise workstation extension 12

suse linux enterprise desktop 12

opensuse leap 42.1

opensuse opensuse 13.2

redhat enterprise linux desktop 7.0

redhat enterprise linux server aus 7.2

redhat enterprise linux workstation 7.0

redhat enterprise linux server tus 7.2

redhat enterprise linux server 7.0

redhat enterprise linux server tus 7.3

redhat enterprise linux server aus 7.3

redhat enterprise linux server aus 7.4

redhat enterprise linux eus 7.3

redhat enterprise linux eus 7.2

redhat enterprise linux eus 7.4

redhat enterprise linux eus 7.5

redhat enterprise linux eus 7.6

redhat enterprise linux eus 7.7

redhat enterprise linux server aus 7.6

redhat enterprise linux server aus 7.7

redhat enterprise linux server tus 7.6

redhat enterprise linux server tus 7.7

mariadb mariadb

debian debian linux 8.0

canonical ubuntu linux 15.10

canonical ubuntu linux 14.04

canonical ubuntu linux 16.04

canonical ubuntu linux 12.04

Vendor Advisories

Debian Bug report logs - #821094 Security fixes from the April 2016 CPU Package: src:mysql-56; Maintainer for src:mysql-56 is (unknown); Reported by: "Norvald H Ryeng" <norvaldryeng@oraclecom> Date: Fri, 15 Apr 2016 12:03:01 UTC Severity: grave Tags: fixed-upstream, security, upstream Found in version mysql-56/562 ...
Several security issues were fixed in MySQL ...
Several security issues were fixed in MySQL ...
It was found that the MariaDB client library did not properly check host names against server identities noted in the X509 certificates when establishing secure connections using TLS/SSL A man-in-the-middle attacker could possibly use this flaw to impersonate a server to a client (CVE-2016-2047) Unspecified vulnerability in Oracle MySQL 5546 a ...
A double-free flaw was found in the way OpenSSL parsed certain malformed DSA (Digital Signature Algorithm) private keys An attacker could create specially crafted DSA private keys that, when processed by an application compiled against OpenSSL, could cause the application to crash (CVE-2016-0705) The ssl_verify_server_cert function in sql-common/ ...
Unspecified vulnerability in Oracle MySQL 5548 and earlier, 5629 and earlier, and 5711 and earlier allows local users to affect integrity and availability via vectors related to Federated ...