Revision Date: | 2016-11-25 | Version: | 7 |
Title: | Vulnerability in Oracle MySQL 5.6.29 and earlier, 5.7.11 and earlier – CVE-2016-0705 |
Description: | Double free vulnerability in the dsa_priv_decode function in crypto/dsa/dsa_ameth.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a malformed DSA private key. |
Family: | windows | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2016-0705
|
Platform(s): | Microsoft Windows 10 Microsoft Windows 7 Microsoft Windows 8 Microsoft Windows 8.1 Microsoft Windows Server 2008 R2 Microsoft Windows Server 2012 Microsoft Windows Server 2012 R2
| Product(s): | MySQL Server
|
Definition Synopsis |
Check for installation of MySQL Server 5.6 + vulnerable version MySQL 5.6 is installed
AND Check if MySQL Server 5.6 version is less than or equal 5.6.29
OR Check for installation of MySQL Server 5.7 + vulnerable version
MySQL 5.7 is installed
AND Check if MySQL Server 5.7 version is less than or equal 5.7.11
|