Wind River Support Network

HomeDefectsLIN10-4402
Fixed

LIN10-4402 : Security Advisory - mysql - CVE-2018-3081

Created: Jul 31, 2018    Updated: Dec 3, 2018
Resolved Date: Aug 15, 2018
Previous ID: LIN6-14810
Found In Version: 10.17.41.9
Fix Version: 10.17.41.11
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

Vulnerability in the MySQL Client component of Oracle MySQL (subcomponent: Client programs). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior, 5.7.22 and prior and 8.0.11 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Client as well as unauthorized update, insert or delete access to some of MySQL Client accessible data. 

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-3081

Other Downloads


CVEs


Live chat
Online