PT-2016-3288 · Mysql Server+14 · Mysql Server+16

Shi Lei

·

Publicado

2016-08-29

·

Atualizado

2024-06-15

·

CVE-2016-6304

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions OpenSSL versions prior to 1.0.1u OpenSSL versions prior to 1.0.2i OpenSSL versions prior to 1.1.0a MySQL Server versions 5.6.33 and earlier MySQL Server versions 5.7.15 and earlier
Description The issue is related to multiple memory leaks in the t1 lib.c file of the OpenSSL library, which can be exploited by remote attackers to cause a denial of service via large OCSP Status Request extensions. This can lead to memory consumption and potentially cause the application to crash. Additionally, a vulnerability in the MySQL Server component can allow a high-privileged attacker with network access to compromise the server, resulting in unauthorized ability to cause a hang or crash.
Recommendations For OpenSSL versions prior to 1.0.1u, update to version 1.0.1u or later. For OpenSSL versions prior to 1.0.2i, update to version 1.0.2i or later. For OpenSSL versions prior to 1.1.0a, update to version 1.1.0a or later. For MySQL Server versions 5.6.33 and earlier, update to a version later than 5.6.33. For MySQL Server versions 5.7.15 and earlier, update to a version later than 5.7.15. As a temporary workaround, consider restricting access to the t1 lib.c file or disabling the use of large OCSP Status Request extensions until a patch is available.

Exploit

Correção

DoS

Memory Leak

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2016-2005
ALT-PU-2016-2068
BDU:2019-01911
CESA-2016_1940
CVE-2016-6304
DLA-637-1
DSA-3673-1
MGASA-2016-0338
MGASA-2016-0408
OPENSUSE-SU-2016_2391-1
OPENSUSE-SU-2016_2407-1
OPENSUSE-SU-2016_2496-1
OPENSUSE-SU-2016_2537-1
OPENSUSE-SU-2016_2769-1
OPENSUSE-SU-2016_2788-1
OPENSUSE-SU-2018_0458-1
OPENSUSE-SU-2024:10200-1
OPENSUSE-SU-2024:10247-1
OPENSUSE-SU-2024:10271-1
OPENSUSE-SU-2024:11127-1
RHSA-2016:1940
RHSA-2016:2802
RHSA-2016_1940
RHSA-2017:1413
RHSA-2017:1414
RHSA-2017:1658
RHSA-2017:1801
RHSA-2017:2493
SUSE-FU-2022:0445-1
SUSE-SU-2016:2387-1
SUSE-SU-2016:2394-1
SUSE-SU-2016:2458-1
SUSE-SU-2016:2468-1
SUSE-SU-2016:2469-1
SUSE-SU-2016:2470-1
SUSE-SU-2016:2470-2
SUSE-SU-2017:2699-1
SUSE-SU-2017:2700-1
SUSE-SU-2019:14246-1
SUSE-SU-2019_14246-1
USN-3087-1
USN-3087-2

Produtos afetados

Alt Linux
Centos
Cisco Asa
Cisco Nexus
Cisco Wls
Fortios
Freebsd
Huawei Vrp
Ibm Aix
Junos
Mysql Server
Nessus
Openssl
Red Hat
Suse
Ubuntu
Virtualbox