First published: Thu Apr 21 2016(Updated: )
Unspecified vulnerability in Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 and earlier and MariaDB before 5.5.49, 10.0.x before 10.0.25, and 10.1.x before 10.1.14 allows local users to affect confidentiality via vectors related to DML.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/mysql | <5.5.49 | 5.5.49 |
redhat/mysql | <5.6.30 | 5.6.30 |
redhat/mysql | <5.7.12 | 5.7.12 |
redhat/mariadb | <5.5.49 | 5.5.49 |
redhat/mariadb | <10.1.14 | 10.1.14 |
redhat/mariadb | <10.0.25 | 10.0.25 |
Debian | =8.0 | |
Red Hat Enterprise Linux | =6.0 | |
Red Hat Enterprise Linux | =7.0 | |
IBM PowerKVM | =2.1 | |
IBM PowerKVM | =3.1 | |
SUSE Linux | =42.1 | |
Oracle MySQL | >=5.5.0<=5.5.48 | |
Oracle MySQL | >=5.6.0<=5.6.29 | |
Oracle MySQL | >=5.7.0<=5.7.11 | |
MariaDB | >=5.5.20<5.5.49 | |
MariaDB | >=10.0.0<10.0.25 | |
MariaDB | >=10.1.0<10.1.14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0643 has been categorized as a medium-severity vulnerability due to its potential impact on data confidentiality.
To fix CVE-2016-0643, upgrade MySQL to version 5.5.49 or later, 5.6.30 or later, or 5.7.12 or later, and for MariaDB, upgrade to version 5.5.49, 10.0.25, or 10.1.14.
CVE-2016-0643 affects MySQL versions 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 and earlier.
MariaDB versions before 5.5.49, 10.0.x before 10.0.25, and 10.1.x before 10.1.14 are vulnerable to CVE-2016-0643.
CVE-2016-0643 poses risks to data confidentiality, allowing local users to manipulate data through vectors related to DML.