Vulnerability Description
Unspecified vulnerability in Oracle MySQL 5.6.29 and earlier and 5.7.11 and earlier and MariaDB 10.0.x before 10.0.25 and 10.1.x before 10.1.14 allows local users to affect availability via vectors related to InnoDB.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mariadb | Mariadb | >= 10.0.0, < 10.0.25 |
| Debian | Debian Linux | 8.0 |
| Opensuse | Leap | 42.1 |
| Oracle | Mysql | >= 5.6.0, <= 5.6.29 |
| Redhat | Enterprise Linux | 6.0 |
References
- http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00053.htmlMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00033.htmlMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00034.htmlMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00051.htmlMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00053.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-0705.htmlThird Party Advisory
- http://www.debian.org/security/2016/dsa-3595Third Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.htmlPatchVendor Advisory
- http://www.securityfocus.com/bid/86424Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1035606Third Party AdvisoryVDB Entry
- http://www.ubuntu.com/usn/USN-2953-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-2954-1Third Party Advisory
- https://access.redhat.com/errata/RHSA-2016:1132Third Party Advisory
- https://mariadb.com/kb/en/mariadb/mariadb-10025-release-notes/Vendor Advisory
- https://mariadb.com/kb/en/mariadb/mariadb-10114-release-notes/Vendor Advisory
FAQ
What is CVE-2016-0655?
CVE-2016-0655 is a vulnerability with a CVSS score of 4.7 (MEDIUM). Unspecified vulnerability in Oracle MySQL 5.6.29 and earlier and 5.7.11 and earlier and MariaDB 10.0.x before 10.0.25 and 10.1.x before 10.1.14 allows local users to affect availability via vectors re...
How severe is CVE-2016-0655?
CVE-2016-0655 has been rated MEDIUM with a CVSS base score of 4.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-0655?
Check the references section above for vendor advisories and patch information. Affected products include: Mariadb Mariadb, Debian Debian Linux, Opensuse Leap, Oracle Mysql, Redhat Enterprise Linux.