CVE-2016-3440: High severity mysql vulnerability
Published Jul 21, 2016
·Updated
Unspecified vulnerability in Oracle MySQL 5.7.11 and earlier allows remote authenticated users to affect availability via vectors related to Server: Optimizer.
Affected Software
1 affected component
ORACLE MySQL<=5.7.11
Remediation
Event History
Jul 21, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-3440?
CVE-2016-3440 has a medium severity rating due to its impact on availability.
2
How do I fix CVE-2016-3440?
To fix CVE-2016-3440, update your Oracle MySQL to version 5.7.12 or later.
3
Who is affected by CVE-2016-3440?
CVE-2016-3440 affects remote authenticated users of Oracle MySQL versions 5.7.11 and earlier.
4
What types of attacks could exploit CVE-2016-3440?
CVE-2016-3440 could be exploited to disrupt the availability of the MySQL server.
5
Is there a workaround for CVE-2016-3440?
There are no official workarounds for CVE-2016-3440; updating MySQL is the recommended action.