First published: Thu Apr 21 2016(Updated: )
Unspecified vulnerability in Oracle MySQL 5.5.47 and earlier, 5.6.28 and earlier, and 5.7.10 and earlier and MariaDB before 5.5.48, 10.0.x before 10.0.24, and 10.1.x before 10.1.12 allows local users to affect availability via vectors related to PS.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/mysql | <5.5.48 | 5.5.48 |
redhat/mysql | <5.6.29 | 5.6.29 |
redhat/mysql | <5.7.11 | 5.7.11 |
redhat/mariadb | <5.5.48 | 5.5.48 |
redhat/mariadb | <10.1.12 | 10.1.12 |
redhat/mariadb | <10.0.24 | 10.0.24 |
IBM PowerKVM | =2.1 | |
IBM PowerKVM | =3.1 | |
Red Hat Enterprise Linux | =6.0 | |
Red Hat Enterprise Linux | =7.0 | |
SUSE Linux | =42.1 | |
Debian | =8.0 | |
Oracle Linux | =7 | |
Oracle MySQL | >=5.5.0<=5.5.47 | |
Oracle MySQL | >=5.6.0<=5.6.28 | |
Oracle MySQL | >=5.7.0<=5.7.10 | |
MariaDB | >=5.5.20<5.5.48 | |
MariaDB | >=10.0.0<10.0.24 | |
MariaDB | >=10.1.0<10.1.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2016-0649 is considered potentially critical, as it allows local users to affect the availability of MySQL and MariaDB servers.
To fix CVE-2016-0649, upgrade your MySQL to version 5.5.48 or later, 5.6.29 or later, or 5.7.11 or later, or upgrade MariaDB to 5.5.48, 10.0.24, or 10.1.12 or later.
CVE-2016-0649 affects MySQL versions 5.5.47 and earlier, 5.6.28 and earlier, and 5.7.10 and earlier.
CVE-2016-0649 affects MariaDB versions before 5.5.48, 10.0.x before 10.0.24, and 10.1.x before 10.1.12.
CVE-2016-0649 is a local vulnerability, meaning it can only be exploited by local users on the affected systems.