CVE-2018-3145: Medium severity oracle mysql vulnerability
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this MySQL Server vulnerability?
The vulnerability ID for this MySQL Server vulnerability is CVE-2018-3145.
What is the affected software for this MySQL Server vulnerability?
The affected software for this MySQL Server vulnerability includes Oracle MySQL, NetApp OnCommand Insight, NetApp OnCommand Unified Manager, NetApp OnCommand Workflow Automation, NetApp Snapcenter, and NetApp Storage Automation Store.
What is the severity level of vulnerability CVE-2018-3145?
The severity level of vulnerability CVE-2018-3145 is medium with a severity value of 6.5.
How can a low privileged attacker exploit this MySQL Server vulnerability?
A low privileged attacker with network access via multiple protocols can exploit this MySQL Server vulnerability to compromise the server.
Where can I find more information about this MySQL Server vulnerability?
You can find more information about this MySQL Server vulnerability at the following references: [Oracle Security Advisory](http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html), [SecurityFocus](http://www.securityfocus.com/bid/105607), and [SecurityTracker](http://www.securitytracker.com/id/1041888).