|
|||
Rule General Information |
---|
Release Date: | 2017-06-21 | |
Rule Name: | Oracle Mysql Sql_authentication Integer Overflow Vulnerability -2 (CVE-2017-3599) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | A vulnerability was found in Oracle MySQL. The flaw is caused by an integer overflow in the Pluggable Authentication module of MySQL. The affected versions are: MySQL server 5.6.35 and earlier and 5.7.17 and earlier. | |
Impact: | An attacker can exploit the affected software with a integer overflow vulnerability. Successful exploit leads to execute arbitrary code, and failed exploit may disturb the software logic and cause denial of service. | |
Affected OS: | Solaris, FreeBSD, Windows, Linux, Other Unix, Others | |
Reference: | SecurityFocusBID:97754 ExploitDB:41954 http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html SecurityTrackerID:1038287 |
|
Solutions |
---|
More advisories have been published on the website, please visit for more suggestions: http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html |