5.5
CVSSv3

CVE-2016-0644

Published: 21/04/2016 Updated: 27/12/2019
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

Unspecified vulnerability in Oracle MySQL 5.5.47 and previous versions, 5.6.28 and previous versions, and 5.7.10 and previous versions and MariaDB prior to 5.5.48, 10.0.x prior to 10.0.24, and 10.1.x prior to 10.1.12 allows local users to affect availability via vectors related to DDL.

Vulnerable Product Search on Vulmon Subscribe to Product

debian debian linux 8.0

opensuse leap 42.1

oracle linux 7

ibm powerkvm 2.1

ibm powerkvm 3.1

redhat enterprise linux 7.0

redhat enterprise linux 6.0

oracle mysql

mariadb mariadb

Vendor Advisories

Debian Bug report logs - #821094 Security fixes from the April 2016 CPU Package: src:mysql-56; Maintainer for src:mysql-56 is (unknown); Reported by: "Norvald H Ryeng" <norvaldryeng@oraclecom> Date: Fri, 15 Apr 2016 12:03:01 UTC Severity: grave Tags: fixed-upstream, security, upstream Found in version mysql-56/562 ...
Several security issues were fixed in MySQL ...
Several issues have been discovered in the MariaDB database server The vulnerabilities are addressed by upgrading MariaDB to the new upstream version 10025 Please see the MariaDB 100 Release Notes for further details: mariadbcom/kb/en/mariadb/mariadb-10024-release-notes/ mariadbcom/kb/en/mariadb/mariadb-10025-release-notes/ ...
It was found that the MariaDB client library did not properly check host names against server identities noted in the X509 certificates when establishing secure connections using TLS/SSL A man-in-the-middle attacker could possibly use this flaw to impersonate a server to a client (CVE-2016-2047) Unspecified vulnerability in Oracle MySQL 5546 a ...
Unspecified vulnerability in Oracle MySQL 5547 and earlier, 5628 and earlier, and 5710 and earlier and MariaDB before 5548, 100x before 10024, and 101x before 10112 allows local users to affect availability via vectors related to DDL ...