PT-2018-15802 · Oracle+3 · Mysql Server+2

Publicado

2018-04-17

·

Atualizado

2018-11-27

·

CVE-2018-2780

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Oracle MySQL versions 5.7.21 and prior
Description The issue allows a low privileged attacker with network access via multiple protocols to compromise the MySQL Server. Successful attacks can result in the unauthorized ability to cause a hang or frequently repeatable crash of the MySQL Server.
Recommendations For versions 5.7.21 and prior, update to a version later than 5.7.21 to resolve the issue. As a temporary workaround, consider restricting network access to the MySQL Server to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

ALT-PU-2018-1993
CVE-2018-2780
RHSA-2018:3655
USN-3629-1
USN-3629-3

Produtos afetados

Alt Linux
Mysql Server
Ubuntu