PT-2020-22772 · Mysql Server · Mysql X Plugin

Published

2020-11-30

·

Updated

2020-11-30

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions MySQL X Plugin (affected versions not specified)
Description The MySQL X Plugin was listening to all network interfaces by default due to a packaging error, contrary to expectations. This issue may impact environments where the MySQL X Plugin needs to be accessible from the network. The update changes the default MySQL configuration to bind the MySQL X Plugin to localhost only.
Recommendations To resolve the issue, modify the mysqlx-bind-address setting in the /etc/mysql/mysql.conf.d/mysqld.cnf file to allow network access if necessary. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

USN-4651-1

Affected Products

Mysql X Plugin