First published: Wed Oct 17 2018(Updated: )
Last updated 24 July 2024
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/mariadb-10.0 | ||
debian/mysql-5.5 | ||
debian/mysql-5.7 | ||
redhat/mysql | <5.6.42 | 5.6.42 |
redhat/mysql | <5.7.24 | 5.7.24 |
redhat/mysql | <8.0.13 | 8.0.13 |
redhat/mariadb | <10.3.11 | 10.3.11 |
redhat/mariadb | <10.2.19 | 10.2.19 |
redhat/mariadb | <10.1.37 | 10.1.37 |
redhat/mariadb | <10.0.37 | 10.0.37 |
Oracle MySQL | >=5.6.0<=5.6.41 | |
Oracle MySQL | >=5.7.0<=5.7.23 | |
Oracle MySQL | >=8.0.0<=8.0.12 | |
Canonical Ubuntu Linux | =14.04 | |
Canonical Ubuntu Linux | =16.04 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =18.10 | |
Debian Debian Linux | =8.0 | |
Debian Debian Linux | =9.0 | |
NetApp OnCommand Insight | ||
Netapp Oncommand Unified Manager Vmware Vsphere | >=9.4 | |
NetApp OnCommand Workflow Automation | ||
Netapp Snapcenter | ||
Netapp Storage Automation Store | ||
Netapp Oncommand Unified Manager | >=7.3 | |
Microsoft Windows | ||
Mariadb Mariadb | >=10.0.0<10.0.37 | |
Mariadb Mariadb | >=10.1.0<10.1.37 | |
Mariadb Mariadb | >=10.2.0<10.2.19 | |
Mariadb Mariadb | >=10.3.0<10.3.11 | |
All of | ||
Netapp Oncommand Unified Manager | >=7.3 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-3156 is a vulnerability in the MySQL Server component of Oracle MySQL that allows a low privileged attacker with network access to compromise the system.
The affected versions of MySQL are 5.6.41 and prior, 5.7.23 and prior, and 8.0.12 and prior.
The severity of CVE-2018-3156 is classified as medium, with a severity value of 6.5.
To fix CVE-2018-3156 in MySQL, you should update to version 5.6.42 for MySQL 5.6, version 5.7.24 for MySQL 5.7, or version 8.0.13 for MySQL 8.0.
Yes, you can find more information about CVE-2018-3156 at the following references: [oracle.com](https://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html#AppendixMSQL), [security-tracker.debian.org](https://security-tracker.debian.org/tracker/CVE-2018-3156), [oracle.com](http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html).