CVE-2016-3471: High severity oracle mysql vulnerability
Published Jul 21, 2016
·Updated
Unspecified vulnerability in Oracle MySQL 5.5.45 and earlier and 5.6.26 and earlier allows local users to affect confidentiality, integrity, and availability via vectors related to Server: Option.
Affected Software
7 affected components
Oracle MySQL>=5.5.0<=5.5.45
Oracle MySQL>=5.6.0<=5.6.26
redhat Enterprise Linux=6.0
redhat Enterprise Linux=7.0
MariaDB MariaDB>=5.5.0<5.5.46
MariaDB MariaDB>=10.0.0<10.0.22
MariaDB MariaDB>=10.1.0<10.1.9
Remediation
Event History
Jul 21, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-3471?
CVE-2016-3471 has a high severity level due to its potential impact on confidentiality, integrity, and availability.
2
How do I fix CVE-2016-3471?
To fix CVE-2016-3471, upgrade to MySQL version 5.5.46 or later, or 5.6.27 or later to mitigate the vulnerability.
3
Which versions of MySQL are affected by CVE-2016-3471?
CVE-2016-3471 affects Oracle MySQL versions 5.5.45 and earlier, and 5.6.26 and earlier.
4
What types of products are impacted by CVE-2016-3471?
CVE-2016-3471 impacts Oracle MySQL, MariaDB versions below 5.5.46, and certain versions of Red Hat Enterprise Linux.
5
Is CVE-2016-3471 exploitable by local users?
Yes, CVE-2016-3471 can be exploited by local users, affecting the system's confidentiality and integrity.