CVE-2017-3302
published 2017-02-12CVE-2017-3302: Crash in libmysqlclient.so in Oracle MySQL before 5.6.21 and 5.7.x before 5.7.5 and MariaDB through 5.5.54, 10.0.x through 10.0.29, 10.1.x through 10.1.21, and…
high7.5CVSS 3.0
AVNACLPRNUINSUCNINAH
Crash in libmysqlclient.so in Oracle MySQL before 5.6.21 and 5.7.x before 5.7.5 and MariaDB through 5.5.54, 10.0.x through 10.0.29, 10.1.x through 10.1.21, and 10.2.x through 10.2.3.
Affected
38 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| mariadb | mariadb | <= 5.5.54 | — |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | >= 0 < 10.1.22-r0 | 10.1.22-r0 |
| mariadb | mariadb | 10.0.0 – 10.0.29 | — |
| mariadb | mariadb | 10.1.0 – 10.1.21 | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
Ubuntu
MySQL vulnerabilities
vendor_ubuntu·2017-07-24
CVE-2017-3302 MySQL vulnerabilities
Title: MySQL vulnerabilities
Summary: Several security issues were fixed in MySQL.
USN-3357-1 fixed several vulnerabilities in MySQL. This update
provides the corresponding update for Ubuntu 12.04 ESM.
Original advisory details:
Multiple security issues were discovered in MySQL and this update includes
new upstream MySQL versions to fix these issues.
MySQL has been updated to 5.5.57 in Ubuntu 12.04 ESM.
In addition to security fixes, the updated packages contain bug fixes,
new features, and possibly incompatible changes.
Please see the following for more information:
http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-57.html
http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html
Instructions: In general, a standard system update will make all the necessary
Ubuntu
MySQL vulnerabilities
vendor_ubuntu·2017-04-27
CVE-2017-3302 MySQL vulnerabilities
Title: MySQL vulnerabilities
Summary: Several security issues were fixed in MySQL.
Multiple security issues were discovered in MySQL and this update includes
new upstream MySQL versions to fix these issues.
MySQL has been updated to 5.5.55 in Ubuntu 14.04 LTS. Ubuntu 16.04 LTS,
Ubuntu 16.10 and Ubuntu 17.04 have been updated to MySQL 5.7.18.
In addition to security fixes, the updated packages contain bug fixes,
new features, and possibly incompatible changes.
Please see the following for more information:
http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-55.html
http://dev.mysql.com/doc/relnotes/mysql/5.7/en/news-5-7-18.html
http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html
Instructions: In general, a standard system update will make all the necessary
Red Hat
mysql: prepared statement handle use-after-free after disconnect
vendor_redhat·2017-01-27·CVSS 7.5
CVE-2017-3302 [HIGH] CWE-416 mysql: prepared statement handle use-after-free after disconnect
mysql: prepared statement handle use-after-free after disconnect
Crash in libmysqlclient.so in Oracle MySQL before 5.6.21 and 5.7.x before 5.7.5 and MariaDB through 5.5.54, 10.0.x through 10.0.29, 10.1.x through 10.1.21, and 10.2.x through 10.2.3.
A flaw was found in the way MySQL client library (libmysqlclient) handled prepared statements when server connection was lost. A malicious server or a man-in-the-middle attacker could possibly use this flaw to crash an application using libmysqlclient.
Package: mysql55-mysql (Red Hat Enterprise Linux 5) - Will not fix
Package: mysql (Red Hat Enterprise Linux 6) - Will not fix
Package: mariadb-galera (Red Hat Enterprise Linux OpenStack Platform 5 (Icehouse)) - Not affected
Package: mariadb-galera (Red Hat Enterprise Linux OpenStack Platform
GHSA
GHSA-77pr-jpcv-9w4v: Crash in libmysqlclient
ghsa_unreviewed·2022-05-13
CVE-2017-3302 [HIGH] CWE-416 GHSA-77pr-jpcv-9w4v: Crash in libmysqlclient
Crash in libmysqlclient.so in Oracle MySQL before 5.6.21 and 5.7.x before 5.7.5 and MariaDB through 5.5.54, 10.0.x through 10.0.29, 10.1.x through 10.1.21, and 10.2.x through 10.2.3.
OSV
CVE-2017-3302: Crash in libmysqlclient
osv·2017-02-12·CVSS 7.5
CVE-2017-3302 [HIGH] CVE-2017-3302: Crash in libmysqlclient
Crash in libmysqlclient.so in Oracle MySQL before 5.6.21 and 5.7.x before 5.7.5 and MariaDB through 5.5.54, 10.0.x through 10.0.29, 10.1.x through 10.1.21, and 10.2.x through 10.2.3.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-3302 community-mysql: mysql: use-after-free in libmysqlclient.so [fedora-all]
bugzilla·2017-02-14·CVSS 7.5
CVE-2017-3302 [HIGH] CVE-2017-3302 community-mysql: mysql: use-after-free in libmysqlclient.so [fedora-all]
CVE-2017-3302 community-mysql: mysql: use-after-free in libmysqlclient.so [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported
Bugzilla
CVE-2017-3302 mysql: prepared statement handle use-after-free after disconnect
bugzilla·2017-02-14·CVSS 7.5
CVE-2017-3302 [HIGH] CVE-2017-3302 mysql: prepared statement handle use-after-free after disconnect
CVE-2017-3302 mysql: prepared statement handle use-after-free after disconnect
A use-after-free flaw was found in the MySQL client library (libmysqlclient.so). A malicious MySQL server could cause an application using the MySQL client library to crash.
Upstream bugs:
https://bugs.mysql.com/bug.php?id=70429
https://bugs.mysql.com/bug.php?id=63363
Upstream patch:
https://github.com/mysql/mysql-server/commit/4797ea0b772d5f4c5889bc552424132806f46e93
Discussion:
Created community-mysql tracking bugs for this issue:
Affects: fedora-all [bug 1422122]
---
This was first posted on oss-sec:
http://www.openwall.com/lists/oss-security/2017/01/28/1
---
The issue was fixed in MySQL 5.5.55 and is listed in the April 2017 CPU:
http://www.oracle.com/technetwork/security-advisory/cpuapr2017-32
http://www.debian.org/security/2017/dsa-3809http://www.debian.org/security/2017/dsa-3834http://www.openwall.com/lists/oss-security/2017/02/11/11http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.htmlhttp://www.securityfocus.com/bid/96162http://www.securitytracker.com/id/1038287https://access.redhat.com/errata/RHSA-2017:2192https://access.redhat.com/errata/RHSA-2017:2787https://access.redhat.com/errata/RHSA-2018:0279https://access.redhat.com/errata/RHSA-2018:0574http://www.debian.org/security/2017/dsa-3809http://www.debian.org/security/2017/dsa-3834http://www.openwall.com/lists/oss-security/2017/02/11/11http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.htmlhttp://www.securityfocus.com/bid/96162http://www.securitytracker.com/id/1038287https://access.redhat.com/errata/RHSA-2017:2192https://access.redhat.com/errata/RHSA-2017:2787https://access.redhat.com/errata/RHSA-2018:0279https://access.redhat.com/errata/RHSA-2018:0574
2017-02-12
Published