Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: GIS Extension). Supported versions that are affected are 5.6.39 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
CVSS Details
- CVSS 3.1 Base Score: 6.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade mysql57-serverUpgrade mariadb55-serverUpgrade mariadb100-serverUpgrade mysql55-serverUpgrade percona56-serverUpgrade mysql56-serverUpgrade percona57-serverUpgrade percona55-serverUpgrade mariadb101-serverUpgrade mariadb102-server | Apr 22, 2018 | Apr 21, 2018 |
| Oracle Mysql | — | Upgrade to the latest version of MySQL | May 1, 2018 | Apr 18, 2018 |
| Oracle Solaris | — | Upgrade database/mysql-56 to version 5.6.40-0.175.3.33.0.4.0 on Solaris 11.3Upgrade database/mysql-55/tests to version 5.5.60-0.175.3.33.0.4.0 on Solaris 11.3Upgrade database/mysql-55/client to version 5.5.60-0.175.3.33.0.4.0 on Solaris 11.3Upgrade database/mysql-55 to version 5.5.60-0.175.3.33.0.4.0 on Solaris 11.3Upgrade database/mysql-56/client to version 5.6.40-0.175.3.33.0.4.0 on Solaris 11.3Upgrade database/mysql-56/tests to version 5.6.40-0.175.3.33.0.4.0 on Solaris 11.3Upgrade database/mysql-56/library to version 5.6.40-0.175.3.33.0.4.0 on Solaris 11.3Upgrade database/mysql-55/library to version 5.5.60-0.175.3.33.0.4.0 on Solaris 11.3 | Jun 22, 2018 | Apr 18, 2018 |
| Suse | — | Upgrade mysql-community-server-tools-debuginfoUpgrade mysql-community-server-bench-debuginfoUpgrade mysql-community-serverUpgrade mysql-community-server-debugsourceUpgrade mysql-community-server-benchUpgrade mysql-community-server-toolsUpgrade mysql-community-server-errormessagesUpgrade mysql-community-server-debuginfoUpgrade libmysql56client18-debuginfoUpgrade libmysql56client_r18-32bitUpgrade libmysql56client_r18Upgrade mysql-community-server-testUpgrade libmysql56client18-debuginfo-32bitUpgrade mysql-community-server-client-debuginfoUpgrade libmysql56client18Upgrade mysql-community-server-clientUpgrade libmysql56client18-32bitUpgrade mysql-community-server-test-debuginfo | Apr 29, 2018 | Apr 18, 2018 |
| Ubuntu | — | No solution exists | Jun 26, 2025 | Apr 19, 2018 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub