CVE-2016-0546 - CVE House
Back to Database
Status published High CVE-2016-0546

Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and...

Vulnerability Description

Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Client. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that these are multiple buffer overflows in the mysqlshow tool that allow remote database servers to have unspecified impact via a long table or database name.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-0546

Credits & Attribution

No credits recorded in the NVD database.

References

Affected Vendor

Affected Software

ubuntu linux, mariadb, enterprise linux, mysql, solaris, linux, leap, opensuse, enterprise linux desktop, enterprise linux hpc node, enterprise linux hpc node eus, enterprise linux server, enterprise linux server aus, enterprise linux server eus, enterprise linux workstation, debian linux
Vulnerable Versions:
12.04, 14.04, 15.04, 15.10, 5.5.20, 10.0.0, 10.1.0, 6.0, 7.0, 5.5.0, 5.6.0, 5.7.0, 11.3, 7, 42.1, 13.2, 7.2, 8.0

Timeline

Official Publish: January 21st, 2016
Last Modified: August 5th, 2024
Added to House: July 20th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.