PT-2017-16061 · Oracle+7 · Mysql Server+6

Publicado

2017-07-18

·

Atualizado

2023-12-29

·

CVE-2017-3641

CVSS v3.1

4.9

Média

VetorAV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions MySQL Server versions 5.5.56 and earlier MySQL Server versions 5.6.36 and earlier MySQL Server versions 5.7.18 and earlier
Description The issue allows a high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks can result in unauthorized ability to cause a hang or frequently repeatable crash of MySQL Server.
Recommendations For MySQL Server versions 5.5.56 and earlier, update to a version later than 5.5.56 to resolve the issue. For MySQL Server versions 5.6.36 and earlier, update to a version later than 5.6.36 to resolve the issue. For MySQL Server versions 5.7.18 and earlier, update to a version later than 5.7.18 to resolve the issue. As a temporary workaround, consider restricting network access to the MySQL Server to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

ALT-PU-2017-1931
ALT-PU-2017-2214
ALT-PU-2018-2387
ALT-PU-2018-2496
CESA-2018_2439
CVE-2017-3641
DLA-1043-1
DSA-3922-1
DSA-3944-1
DSA-3955-1
MGASA-2017-0289
MGASA-2017-0332
RHSA-2017:2787
RHSA-2017:2886
RHSA-2018:0279
RHSA-2018:0574
RHSA-2018:2439
RHSA-2018_2439
SUSE-RU-2023:3956-1
SUSE-RU-2023:4991-1
SUSE-SU-2017:2290-1
SUSE-SU-2017:2921-1
SUSE-SU-2018:0079-1
SUSE-SU-2018:1853-1
USN-3357-1
USN-3357-2

Produtos afetados

Alt Linux
Centos
Mariadb Server
Mysql Server
Red Hat
Suse
Ubuntu