CVE-2016-3452

6 documents6 sources
Severity
3.7LOW
EPSS
3.3%
top 12.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 21
Latest updateMay 13

Description

Unspecified vulnerability in Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.10 and earlier and MariaDB before 5.5.49, 10.0.x before 10.0.25, and 10.1.x before 10.1.14 allows remote attackers to affect confidentiality via vectors related to Server: Security: Encryption.

CVSS vector

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 2.2 | Impact: 1.4

Affected Packages5 packages

NVDoracle/mysql5.5.05.5.48+2
NVDmariadb/mariadb5.5.205.5.49+2
Alpinemariadb< 5.5.51-r0+1
NVDibm/powerkvm2.1, 3.1+1

Also affects: Enterprise Linux 6.0, 7.0

Patches

🔴Vulnerability Details

3
GHSA
GHSA-chpg-5745-m74h: Unspecified vulnerability in Oracle MySQL 52022-05-13
OSV
CVE-2016-3452: Unspecified vulnerability in Oracle MySQL 52016-07-21
CVEList
CVE-2016-3452: Unspecified vulnerability in Oracle MySQL 52016-07-21

📋Vendor Advisories

1
Red Hat
mysql: unspecified vulnerability in subcomponent: Server: Security: Encryption (CPU July 2016)2016-07-20

💬Community

1
Bugzilla
CVE-2016-3452 mysql: unspecified vulnerability in subcomponent: Server: Security: Encryption (CPU July 2016)2016-07-20
CVE-2016-3452 (LOW CVSS 3.7) | Unspecified vulnerability in Oracle | cvebase.io