RULE(RULE ID:1505163)

Rule General Information
Release Date: 2017-06-21
Rule Name: Oracle Mysql Sql_authentication Integer Overflow Vulnerability -2 (CVE-2017-3599)
Severity:
CVE ID:
Rule Protection Details
Description: A vulnerability was found in Oracle MySQL. The flaw is caused by an integer overflow in the Pluggable Authentication module of MySQL. The affected versions are: MySQL server 5.6.35 and earlier and 5.7.17 and earlier.
Impact: An attacker can exploit the affected software with a integer overflow vulnerability. Successful exploit leads to execute arbitrary code, and failed exploit may disturb the software logic and cause denial of service.
Affected OS: Solaris, FreeBSD, Windows, Linux, Other Unix, Others
Reference: SecurityFocusBID:97754
ExploitDB:41954
http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html
SecurityTrackerID:1038287
Solutions
More advisories have been published on the website, please visit for more suggestions:
http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html