CVE-2018-2767
published 2018-07-18CVE-2018-2767: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption). Supported versions that are affected are 5.5.60 and…
PriorityP411low3.1CVSS 3.1
AVNACHPRLUINSUCLINAN
EPSS
1.52%
71.9th percentile
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.0 Base Score 3.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N).
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| mariadb | mariadb | >= 0 < 10.1.37-r0 | 10.1.37-r0 |
| mariadb | mariadb | >= 0 < 10.1.37-r0 | 10.1.37-r0 |
| mariadb | mariadb | >= 10.0.0 < 10.0.35 | 10.0.35 |
| mariadb | mariadb | >= 10.1.0 < 10.1.33 | 10.1.33 |
| mariadb | mariadb | >= 10.2.0 < 10.2.15 | 10.2.15 |
| mariadb | mariadb | >= 5.5.0 < 5.5.60 | 5.5.60 |
| oracle | mysql | 5.5.0 – 5.5.60 | — |
| oracle | mysql | 5.6.0 – 5.6.40 | — |
| oracle | mysql | 5.7.0 – 5.7.22 | — |
| oracle_corporation | mysql_server | — | — |
| oracle_corporation | mysql_server | — | — |
| oracle_corporation | mysql_server | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
CVSS provenance
nvdv3.13.1LOWCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:P/I:N/A:N
osv3.1LOW
vendor_redhat3.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qhg6-x5p3-8653: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption)
ghsa_unreviewed·2022-05-13
CVE-2018-2767 [LOW] GHSA-qhg6-x5p3-8653: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption)
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.0 Base Score 3.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N).
OSV
CVE-2018-2767: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption)
osv·2018-07-18·CVSS 3.1
CVE-2018-2767 [LOW] CVE-2018-2767: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption)
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.0 Base Score 3.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N).
Ubuntu
MySQL vulnerabilities
vendor_ubuntu·2018-07-30
CVE-2018-2767 MySQL vulnerabilities
Title: MySQL vulnerabilities
Summary: Several security issues were fixed in MySQL.
USN-3725-1 fixed several vulnerabilities in MySQL. This update provides
the corresponding update for Ubuntu 12.04 ESM.
Original advisory details:
Multiple security issues were discovered in MySQL and this update includes
new upstream MySQL versions to fix these issues.
MySQL has been updated to 5.5.61 in Ubuntu 12.04 ESM.
In addition to security fixes, the updated packages contain bug fixes, new
features, and possibly incompatible changes.
Please see the following for more information:
http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-61.html
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html
Instructions: In general, a standard system update will make all the necessary
Ubuntu
MySQL vulnerabilities
vendor_ubuntu·2018-07-30
CVE-2018-2767 MySQL vulnerabilities
Title: MySQL vulnerabilities
Summary: Several security issues were fixed in MySQL.
Multiple security issues were discovered in MySQL and this update includes
new upstream MySQL versions to fix these issues.
MySQL has been updated to 5.5.61 in Ubuntu 14.04 LTS. Ubuntu 16.04 LTS and
Ubuntu 18.04 LTS have been updated to MySQL 5.7.23.
In addition to security fixes, the updated packages contain bug fixes, new
features, and possibly incompatible changes.
Please see the following for more information:
http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-61.html
http://dev.mysql.com/doc/relnotes/mysql/5.7/en/news-5-7-23.html
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM)
vendor_redhat·2018-04-08·CVSS 3.1
CVE-2018-2767 [LOW] CWE-325 mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM)
mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM)
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.0 Base Score 3.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N).
Package: mysql55 (Red Hat Enterprise Linux 5) - Will not fix
Package: mysql (Red Hat Enterprise Linux 6) - Not affected
Package: mariadb-galera (Red
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-19839 libsass: Heap-based buffer over-read in the handle_error function resulting in a denial of service
bugzilla·2019-01-31·CVSS 6.5
CVE-2018-19839 [MEDIUM] CVE-2018-19839 libsass: Heap-based buffer over-read in the handle_error function resulting in a denial of service
CVE-2018-19839 libsass: Heap-based buffer over-read in the handle_error function resulting in a denial of service
In LibSass prior to 3.5.5, the function handle_error in sass_context.cpp allows attackers to cause a denial-of-service resulting from a heap-based buffer over-read via a crafted sass file.
Upstream issue:
https://github.com/sass/libsass/issues/2657
Upstream patch:
https://github.com/sass/libsass/pull/2767/commits/a2dff1b59ea8c8ec10680f9e8e5593e4b38554a1
Upstream pull request:
https://github.com/sass/libsass/pull/2767
Discussion:
Created libsass tracking bugs for this issue:
Affects: epel-7 [bug 1671396]
Affects: fedora-all [bug 1671395]
Bugzilla
CVE-2018-2767 mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM)
bugzilla·2018-04-09·CVSS 5.9
CVE-2018-2767 [MEDIUM] CVE-2018-2767 mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM)
CVE-2018-2767 mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM)
MySQL 5.5, MariaDB 5.5 and 10.3 have a vulnerability in the client library that does not enforce the use of SSL/TLS. Client applications that specify the use of SSL/TLS can result in established connections without SSL/TLS enabled and no reported error.
This is the result of an incomplete fix for CVE-2015-3152 (a.k.a BACKRONYM).
Reference:
http://www.openwall.com/lists/oss-security/2018/04/08/2
Discussion:
Created community-mysql tracking bugs for this issue:
Affects: fedora-all [bug 1564967]
Created mariadb tracking bugs for this issue:
Affects: fedora-all [bug 1564966]
---
In reply to comment 0:
> MySQL 5.5, MariaDB 5.5 and 10.3 have a vulnerability in the client library
> that does not enforc
Bugzilla
CVE-2018-2767 mariadb: mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM) [fedora-all]
bugzilla·2018-04-09·CVSS 3.1
CVE-2018-2767 [LOW] CVE-2018-2767 mariadb: mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM) [fedora-all]
CVE-2018-2767 mariadb: mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM) [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects
Bugzilla
CVE-2018-2767 community-mysql: mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM) [fedora-all]
bugzilla·2018-04-09·CVSS 3.1
CVE-2018-2767 [LOW] CVE-2018-2767 community-mysql: mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM) [fedora-all]
CVE-2018-2767 community-mysql: mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM) [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.htmlhttp://www.securityfocus.com/bid/103954http://www.securitytracker.com/id/1041294https://access.redhat.com/errata/RHSA-2018:2439https://access.redhat.com/errata/RHSA-2018:2729https://lists.debian.org/debian-lts-announce/2018/11/msg00004.htmlhttps://security.netapp.com/advisory/ntap-20180726-0002/https://usn.ubuntu.com/3725-1/https://usn.ubuntu.com/3725-2/https://www.debian.org/security/2018/dsa-4341http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.htmlhttp://www.securityfocus.com/bid/103954http://www.securitytracker.com/id/1041294https://access.redhat.com/errata/RHSA-2018:2439https://access.redhat.com/errata/RHSA-2018:2729https://lists.debian.org/debian-lts-announce/2018/11/msg00004.htmlhttps://security.netapp.com/advisory/ntap-20180726-0002/https://usn.ubuntu.com/3725-1/https://usn.ubuntu.com/3725-2/https://www.debian.org/security/2018/dsa-4341
2018-07-18
Published