[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249982

 
 

909

 
 

195748

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2018:1333-1 -- SLES libmysql55client_r18, libmysql55client18, mysql

ID: oval:org.secpod.oval:def:89044020Date: (C)2021-03-05   (M)2022-12-01
Class: PATCHFamily: unix




This update fixes the following issues: - Update to 5.5.60 in Oracle Apr2018 CPU . - CVE-2018-2761: Vulnerability in the MySQL Server component of Oracle MySQL . Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash of MySQL Server. CVSS 3.0 Base Score 5.9 . CVSS Vector: . - CVE-2018-2755: Vulnerability in the MySQL Server component of Oracle MySQL . Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in MySQL Server, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of MySQL Server. CVSS 3.0 Base Score 7.7 . CVSS Vector: . - CVE-2018-2781: Vulnerability in the MySQL Server component of Oracle MySQL . Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash of MySQL Server. CVSS 3.0 Base Score 4.9 . CVSS Vector: . - CVE-2018-2819: Vulnerability in the MySQL Server component of Oracle MySQL . Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash of MySQL Server. CVSS 3.0 Base Score 6.5 . CVSS Vector: . - CVE-2018-2818: Vulnerability in the MySQL Server component of Oracle MySQL . Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash of MySQL Server. CVSS 3.0 Base Score 4.9 . CVSS Vector: . - CVE-2018-2817: Vulnerability in the MySQL Server component of Oracle MySQL . Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash of MySQL Server. CVSS 3.0 Base Score 6.5 . CVSS Vector: . - CVE-2018-2771: Vulnerability in the MySQL Server component of Oracle MySQL . Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash of MySQL Server. CVSS 3.0 Base Score 4.4 . CVSS Vector: . - CVE-2018-2813: Vulnerability in the MySQL Server component of Oracle MySQL . Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.0 Base Score 4.3 . CVSS Vector: . - CVE-2018-2773: Vulnerability in the MySQL Server component of Oracle MySQL . Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash of MySQL Server. CVSS 3.0 Base Score 4.1 . CVSS Vector: .

Platform:
SUSE Linux Enterprise Server 11 SP4
Product:
libmysql55client_r18
libmysql55client18
mysql
Reference:
SUSE-SU-2018:1333-1
CVE-2018-2755
CVE-2018-2761
CVE-2018-2771
CVE-2018-2773
CVE-2018-2781
CVE-2018-2813
CVE-2018-2817
CVE-2018-2818
CVE-2018-2819
CVE    9
CVE-2018-2755
CVE-2018-2761
CVE-2018-2771
CVE-2018-2773
...
CPE    4
cpe:/a:mysql:mysql
cpe:/a:libmysql55client18:libmysql55client18
cpe:/o:suse:suse_linux_enterprise_server:11:sp4
cpe:/a:libmysql55client_r18:libmysql55client_r18
...

© SecPod Technologies