vulnerability

FreeBSD: VID-e3445736-fd01-11e7-ac58-b499baebfeaf (CVE-2018-2583): MySQL -- multiple vulnerabilities

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:C)
Published
Jan 19, 2018
Added
Jan 20, 2018
Modified
Mar 25, 2026

Description

Oracle reports: Not all vulnerabilities are relevant for all flavors/versions of the servers and clients Vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. GIS: CVE-2018-2573, DDL CVE-2018-2622, Optimizer: CVE-2018-2640, CVE-2018-2665, CVE-2018-2668, Security:Privileges: CVE-2018-2703, Partition: CVE-2018-2562. Vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. InnoDB: CVE-2018-2565, CVE-2018-2612 DML: CVE-2018-2576, CVE-2018-2646, Stored Procedure: CVE-2018-2583, Performance Schema: CVE-2018-2590, Partition: CVE-2018-2591, Optimizer: CVE-2018-2600, CVE-2018-2667, Security:Privileges: CVE-2018-2696, Replication: CVE-2018-2647. Vulnerability allows a low or high privileged attacker with network access via multiple protocols to compromise MySQL Server with unauthorized creation, deletion, modification or access to data/ critical data. InnoDB: CVE-2018-2612, Performance Schema: CVE-2018-2645, Replication: CVE-2018-2647, Partition: CVE-2018-2562.

Solutions

freebsd-upgrade-package-mariadb55-serverfreebsd-upgrade-package-mariadb100-serverfreebsd-upgrade-package-mariadb101-serverfreebsd-upgrade-package-mariadb102-serverfreebsd-upgrade-package-mysql55-serverfreebsd-upgrade-package-mysql56-serverfreebsd-upgrade-package-mysql57-serverfreebsd-upgrade-package-percona55-serverfreebsd-upgrade-package-percona56-serverfreebsd-upgrade-package-percona57-server
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.