CVE-2016-3440
published 2016-07-21CVE-2016-3440: Unspecified vulnerability in Oracle MySQL 5.7.11 and earlier allows remote authenticated users to affect availability via vectors related to Server: Optimizer.
PriorityP338high7.7CVSS 3.0
AVNACLPRLUINSCCNINAH
EPSS
3.19%
86.6th percentile
Unspecified vulnerability in Oracle MySQL 5.7.11 and earlier allows remote authenticated users to affect availability via vectors related to Server: Optimizer.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | mysql | <= 5.7.11 | — |
CVSS provenance
nvdv3.07.7HIGHCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv7.7HIGH
vendor_redhat7.7HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
mysql: unspecified vulnerability in subcomponent: Server: Optimizer (CPU July 2016)
vendor_redhat·2016-07-20·CVSS 7.7
CVE-2016-3440 [HIGH] mysql: unspecified vulnerability in subcomponent: Server: Optimizer (CPU July 2016)
mysql: unspecified vulnerability in subcomponent: Server: Optimizer (CPU July 2016)
Unspecified vulnerability in Oracle MySQL 5.7.11 and earlier allows remote authenticated users to affect availability via vectors related to Server: Optimizer.
Package: mysql55-mysql (Red Hat Enterprise Linux 5) - Not affected
Package: mysql (Red Hat Enterprise Linux 6) - Not affected
Package: mariadb (Red Hat Enterprise Linux 7) - Not affected
Package: mariadb-galera (Red Hat Enterprise Linux OpenStack Platform 5 (Icehouse)) - Not affected
Package: mariadb-galera (Red Hat Enterprise Linux OpenStack Platform 6 (Juno)) - Not affected
Package: mariadb-galera (Red Hat Enterprise Linux OpenStack Platform 7 (Kilo)) - Not affected
Package: mariadb-galera (Red Hat OpenStack Platform 8 (Liberty)) - Not affe
GHSA
GHSA-rv5m-r5mw-fhvp: Unspecified vulnerability in Oracle MySQL 5
ghsa_unreviewed·2022-05-17
CVE-2016-3440 [HIGH] GHSA-rv5m-r5mw-fhvp: Unspecified vulnerability in Oracle MySQL 5
Unspecified vulnerability in Oracle MySQL 5.7.11 and earlier allows remote authenticated users to affect availability via vectors related to Server: Optimizer.
OSV
CVE-2016-3440: Unspecified vulnerability in Oracle MySQL 5
osv·2016-07-21·CVSS 7.7
CVE-2016-3440 [HIGH] CVE-2016-3440: Unspecified vulnerability in Oracle MySQL 5
Unspecified vulnerability in Oracle MySQL 5.7.11 and earlier allows remote authenticated users to affect availability via vectors related to Server: Optimizer.
No detection rules found.
No public exploits indexed.
http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.htmlhttp://www.securityfocus.com/bid/91787http://www.securityfocus.com/bid/91910http://www.securitytracker.com/id/1036362http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.htmlhttp://www.securityfocus.com/bid/91787http://www.securityfocus.com/bid/91910http://www.securitytracker.com/id/1036362
2016-07-21
Published