Логотип exploitDog
product: "mysql_server"
Консоль
Логотип exploitDog

exploitDog

product: "mysql_server"
MySQL

MySQLсвободная реляционная система управления базами данных

Релизный цикл, информация об уязвимостях

Продукт: MySQL
Вендор: oracle

График релизов

8.08.18.28.38.49.09.19.29.39.49.52018201920202021202220232024202520262027202820292030203120322033

Недавние уязвимости MySQL

Количество 1 319

redhat логотип

CVE-2021-23840

почти 5 лет назад

Calls to EVP_CipherUpdate, EVP_EncryptUpdate and EVP_DecryptUpdate may overflow the output length argument in some cases where the input length is close to the maximum permissable length for an integer on the platform. In such cases the return value from the function call will be 1 (indicating success), but the output length value will be negative. This could cause applications to behave incorrectly or crash. OpenSSL versions 1.1.1i and below are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1j. OpenSSL versions 1.0.2x and below are affected by this issue. However OpenSSL 1.0.2 is out of support and no longer receiving public updates. Premium support customers of OpenSSL 1.0.2 should upgrade to 1.0.2y. Other users should upgrade to 1.1.1j. Fixed in OpenSSL 1.1.1j (Affected 1.1.1-1.1.1i). Fixed in OpenSSL 1.0.2y (Affected 1.0.2-1.0.2x).

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:2269-1

около 5 лет назад

Security update for openssl-1_0_0

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:2245-1

около 5 лет назад

Security update for openssl-1_1

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:2236-1

около 5 лет назад

Security update for openssl-1_0_0

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3763-1

около 5 лет назад

Security update for openssl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3762-1

около 5 лет назад

Security update for openssl-1_0_0

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:2223-1

около 5 лет назад

Security update for openssl-1_1

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3740-1

около 5 лет назад

Security update for openssl-1_1

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:14560-1

около 5 лет назад

Security update for openssl1

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3732-1

около 5 лет назад

Security update for openssl-1_0_0

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
redhat логотип
CVE-2021-23840

Calls to EVP_CipherUpdate, EVP_EncryptUpdate and EVP_DecryptUpdate may overflow the output length argument in some cases where the input length is close to the maximum permissable length for an integer on the platform. In such cases the return value from the function call will be 1 (indicating success), but the output length value will be negative. This could cause applications to behave incorrectly or crash. OpenSSL versions 1.1.1i and below are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1j. OpenSSL versions 1.0.2x and below are affected by this issue. However OpenSSL 1.0.2 is out of support and no longer receiving public updates. Premium support customers of OpenSSL 1.0.2 should upgrade to 1.0.2y. Other users should upgrade to 1.1.1j. Fixed in OpenSSL 1.1.1j (Affected 1.1.1-1.1.1i). Fixed in OpenSSL 1.0.2y (Affected 1.0.2-1.0.2x).

CVSS3: 7.5
0%
Низкий
почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:2269-1

Security update for openssl-1_0_0

0%
Низкий
около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:2245-1

Security update for openssl-1_1

0%
Низкий
около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:2236-1

Security update for openssl-1_0_0

0%
Низкий
около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:3763-1

Security update for openssl

0%
Низкий
около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:3762-1

Security update for openssl-1_0_0

0%
Низкий
около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:2223-1

Security update for openssl-1_1

0%
Низкий
около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:3740-1

Security update for openssl-1_1

0%
Низкий
около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:14560-1

Security update for openssl1

0%
Низкий
около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:3732-1

Security update for openssl-1_0_0

0%
Низкий
около 5 лет назад

Уязвимостей на страницу


Поделиться