Bug 1008151 - test, please ignore
test, please ignore
Status: RESOLVED INVALID
Classification: Novell Products
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents
unspecified
Other Other
: P5 - None : Minor
: ---
Assigned To: Johannes Segitz
Security Team bot
:
Depends on:
Blocks: 1008152
  Show dependency treegraph
 
Reported: 2016-11-02 16:20 UTC by Johannes Segitz
Modified: 2016-11-02 16:21 UTC (History)
0 users

See Also:
Found By: ---
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Johannes Segitz 2016-11-02 16:20:15 UTC
Oracle October 2016 Patch Day.
http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html#AppendixMSQL
http://www.oracle.com/technetwork/security-advisory/cpuoct2016verbose-2881725.html#MSQL

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.6.31 and earlier and 5.7.13 and earlier. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server.

CVSS v3.0 Base Score 1.8 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:N/A:L). (legend) [Advisory]
Comment 1 Johannes Segitz 2016-11-02 16:20:20 UTC
We currently ship 5.5.52