Oval Definition:oval:com.ubuntu.xenial:def:201715365000
Revision Date:2018-01-25Version:1
Title:CVE-2017-15365 on Ubuntu 16.04 LTS (xenial) - medium.
Description:sql/event_data_objects.cc in MariaDB before 10.1.30 and 10.2.x before 10.2.10 and Percona XtraDB Cluster before 5.6.37-26.21-3 and 5.7.x before 5.7.19-29.22-3 allows remote authenticated users with SQL access to bypass intended access restrictions and replicate data definition language (DDL) statements to cluster nodes by leveraging incorrect ordering of DDL replication and ACL checking.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-15365
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND Package Information
  • NOT While related to the CVE in some way, the 'mariadb-10.0' package in xenial is not affected.
  • OR NOT While related to the CVE in some way, the 'mysql-5.7' package in xenial is not affected.
  • OR The vulnerability of the 'percona-server-5.6' package in xenial is not known (status: 'needs-triage'). It is pending evaluation.
  • OR The vulnerability of the 'percona-xtradb-cluster-5.6' package in xenial is not known (status: 'needs-triage'). It is pending evaluation.
  • BACK