CVE-2016-0639
mysql: unspecified vulnerability in subcomponent: Server: Pluggable Authentication (CPU April 2016)
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Unspecified vulnerability in Oracle MySQL 5.6.29 and earlier and 5.7.11 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Pluggable Authentication.
Vulnerabilidad no especificada en Oracle MySQL 5.6.29 y versiones anteriores y 5.7.11 y versiones anteriores permite atacantes remotos afectar a la confidencialidad, integridad y confidencialidad a través de vectores relacionados con Pluggable Authentication.
Multiple security issues were discovered in MySQL and this update includes new upstream MySQL versions to fix these issues. MySQL has been updated to 5.5.49 in Ubuntu 12.04 LTS and Ubuntu 14.04 LTS. Ubuntu 15.10 has been updated to MySQL 5.6.30. In addition to security fixes, the updated packages contain bug fixes, new features, and possibly incompatible changes. Various other issues were also addressed.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2015-12-09 CVE Reserved
- 2016-04-21 CVE Published
- 2024-10-15 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-190: Integer Overflow or Wraparound
CAPEC
References (9)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/86418 | Third Party Advisory | |
http://www.securitytracker.com/id/1035606 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html | 2019-02-19 |
URL | Date | SRC |
---|---|---|
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00053.html | 2019-02-19 | |
http://rhn.redhat.com/errata/RHSA-2016-0705.html | 2019-02-19 | |
http://www.ubuntu.com/usn/USN-2953-1 | 2019-02-19 | |
http://www.ubuntu.com/usn/USN-2954-1 | 2019-02-19 | |
https://access.redhat.com/security/cve/CVE-2016-0639 | 2016-05-02 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1329238 | 2016-05-02 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | 6.0 Search vendor "Redhat" for product "Enterprise Linux" and version "6.0" | - |
Affected
| ||||||
Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | 7.0 Search vendor "Redhat" for product "Enterprise Linux" and version "7.0" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Mysql Search vendor "Oracle" for product "Mysql" | >= 5.6.0 <= 5.6.29 Search vendor "Oracle" for product "Mysql" and version " >= 5.6.0 <= 5.6.29" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Mysql Search vendor "Oracle" for product "Mysql" | >= 5.7.0 <= 5.7.11 Search vendor "Oracle" for product "Mysql" and version " >= 5.7.0 <= 5.7.11" | - |
Affected
|