CVE-2018-3079
published 2018-07-18CVE-2018-3079: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.11 and prior. Easily…
PriorityP421medium4.9CVSS 3.1
AVNACLPRHUINSUCNINAH
EPSS
2.00%
78.5th percentile
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.11 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | mysql | 8.0.0 – 8.0.11 | — |
| oracle_corporation | mysql_server | — | — |
CVSS provenance
nvdv3.14.9MEDIUMCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
vendor_redhat10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6mpf-rrf5-hvhr: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB)
ghsa_unreviewed·2022-05-13
CVE-2018-3079 [MEDIUM] GHSA-6mpf-rrf5-hvhr: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB)
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.11 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
Red Hat
Mozilla: Privilege escalation through IPC channel messages
vendor_redhat·2019-01-29·CVSS 10.0
CVE-2018-18505 [CRITICAL] CWE-287 Mozilla: Privilege escalation through IPC channel messages
Mozilla: Privilege escalation through IPC channel messages
An earlier fix for an Inter-process Communication (IPC) vulnerability, CVE-2011-3079, added authentication to communication between IPC endpoints and server parents during IPC process creation. This authentication is insufficient for channels created after the IPC process is started, leading to the authentication not being correctly applied to later channels. This could allow for a sandbox escape through IPC channels due to lack of message validation in the listener process. This vulnerability affects Thunderbird < 60.5, Firefox ESR < 60.5, and Firefox < 65.
Package: firefox (Red Hat Enterprise Linux 8) - Not affected
Package: thunderbird (Red Hat Enterprise Linux 8) - Not affected
Red Hat
mysql: InnoDB unspecified vulnerability (CPU Jul 2018)
vendor_redhat·2018-07-17·CVSS 4.9
CVE-2018-3079 [MEDIUM] mysql: InnoDB unspecified vulnerability (CPU Jul 2018)
mysql: InnoDB unspecified vulnerability (CPU Jul 2018)
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.11 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
Package: mysql55-mysql (Red Hat Enterprise Linux 5) - Not affected
Package: mysql (Red Hat Enterprise Linux 6) - Not affected
Package: mariadb (Red Hat Enterprise Linux 7) - Not affected
Package: m
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-18505 Mozilla: Privilege escalation through IPC channel messages
bugzilla·2019-01-29·CVSS 10.0
CVE-2018-18505 [CRITICAL] CVE-2018-18505 Mozilla: Privilege escalation through IPC channel messages
CVE-2018-18505 Mozilla: Privilege escalation through IPC channel messages
An earlier fix for an Inter-process Communication (IPC) vulnerability, CVE-2011-3079, added authentication to communication between IPC endpoints and server parents during IPC process creation. This authentication is insufficient for channels created after the IPC process is started, leading to the authentication not being correctly applied to later channels. This could allow for a sandbox escape through IPC channels due to lack of message validation in the listener process.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-02/#CVE-2018-18505
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Jed Davis
---
This issue has been addressed in the following products:
Re
Bugzilla
CVE-2018-3079 mysql: InnoDB unspecified vulnerability (CPU Jul 2018)
bugzilla·2018-07-18·CVSS 4.9
CVE-2018-3079 [MEDIUM] CVE-2018-3079 mysql: InnoDB unspecified vulnerability (CPU Jul 2018)
CVE-2018-3079 mysql: InnoDB unspecified vulnerability (CPU Jul 2018)
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.11 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server.
External References:
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html
Discussion:
This only affected MySQL 8, which is not currently shipped as part of any Red Hat product.
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.htmlhttp://www.securityfocus.com/bid/104772http://www.securitytracker.com/id/1041294https://security.netapp.com/advisory/ntap-20180726-0002/http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.htmlhttp://www.securityfocus.com/bid/104772http://www.securitytracker.com/id/1041294https://security.netapp.com/advisory/ntap-20180726-0002/
2018-07-18
Published