Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

SUSE: 2018:2411-1 Moderate: MySQL DoS and Unauthorized Access

suse
Calendar Grey August 17, 2018
Dist Suse Esm H88
The latest patch addresses 5 MySQL vulnerabilities for SUSE users. Ensure your systems are protected and current with this important update.
An update that fixes 5 vulnerabilities is now available

Summary

This update for mysql to version 5.5.61 fixes the following issues: The following security vulnerabilities were addressed: - CVE-2018-3066: Fixed a difficult to exploit vulnerability that allowed high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server accessible data as well as unauthorized read access to a subset of MySQL Server accessible data. (bsc#1101678) - CVE-2018-3070: Fixed an easily exploitable vulnerability that allowed low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable

References

#1101676 #1101677 #1101678 #1101679 #1101680

Cross- CVE-2018-3058 CVE-2018-3063 CVE-2018-3066

CVE-2018-3070 CVE-2018-3081

Affected Products:

SUSE Linux Enterprise Software Development Kit 11-SP4

SUSE Linux Enterprise Server 11-SP4

SUSE Linux Enterprise Debuginfo 11-SP4

https://www.suse.com/security/cve/CVE-2018-3058.html

https://www.suse.com/security/cve/CVE-2018-3063.html

https://www.suse.com/security/cve/CVE-2018-3066.html

https://www.suse.com/security/cve/CVE-2018-3070.html

https://www.suse.com/security/cve/CVE-2018-3081.html

https://bugzilla.suse.com/1101676

https://bugzilla.suse.com/1101677

https://bugzilla.suse.com/1101678

https://bugzilla.suse.com/1101679

https://bugzilla.suse.com/1101680

Announcement ID: SUSE-SU-2018:2411-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here