Oval Definition:oval:com.ubuntu.xenial:def:201734520000000
Revision Date:2017-04-24Version:1
Title:CVE-2017-3452 on Ubuntu 16.04 LTS (xenial) - medium.
Description:Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.6.35 and earlier. Easily "exploitable" vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-3452
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND Package Information
  • NOT libmysqlclient20 package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT mysql-client package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT mysql-client-5.7 package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT mysql-client-core-5.7 package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT mysql-common package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT mysql-server package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT mysql-server-5.7 package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT mysql-server-core-5.7 package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT mysql-source-5.7 package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT mysql-testsuite package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT mysql-testsuite-5.7 package in xenial, while related to the CVE in some way, is not affected.
  • BACK