星期二, 5月 22, 2018

MySQL 0-day vulnerability that is assigned CVE-2016-6662

MySQL 0-day vulnerability that is assigned CVE-2016-6662

Affected Versions

MySQL <= 5.7.15
MySQL <= 5.6.33
MySQL <= 5.5.52

MariaDB
before 5.5.51(不包含)
10.0.x ~ 10.0.27(不包含)
10.1.x ~ 10.1.17(不包含)

Percona
before 5.5.51-38.1(不包含)
5.6.x ~ 5.6.32-78.0(不包含)
5.7.x ~ 5.7.14-7(不包含)

ref:
http://mingxinglai.com/cn/2016/09/0-day-mysql/
http://blog.nsfocus.net/mysql-remote-code-executionprivilege-escalation-vulnerability-technical-analysis-solution/
https://www.rapid7.com/db/vulnerabilities/oracle-mysql-cve-2016-6662
https://documentation.cpanel.net/display/CKB/CVE-2016-6662+MySQL

MySQL爆最高權限漏洞,MariaDB、PerconaDB受累https://www.ithome.com.tw/news/109383

CVE detail
https://www.cvedetails.com/vulnerability-list/vendor_id-185/product_id-316/Mysql-Mysql.html

沒有留言:

LinkWithin-相關文件

Related Posts Plugin for WordPress, Blogger...