Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 599338 - <dev-db/percona-server-5.6.32.78.1: Root Privilege Escalation (CVE-2016-{6663,6664})
Summary: <dev-db/percona-server-5.6.32.78.1: Root Privilege Escalation (CVE-2016-{6663...
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Security
URL: https://www.percona.com/blog/2016/11/...
Whiteboard: ~1 [noglsa cve]
Keywords:
Depends on:
Blocks: CVE-2016-5617, CVE-2016-6664
  Show dependency tree
 
Reported: 2016-11-09 19:53 UTC by Thomas Deutschmann (RETIRED)
Modified: 2016-11-19 05:46 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Thomas Deutschmann (RETIRED) gentoo-dev 2016-11-09 19:53:16 UTC
From $URL:

Percona has addressed CVE-2016-6663 and CVE-2016-6664 in releases of Percona Server for MySQL and Percona XtraDB Cluster.

Percona is happy to announce that the following vulnerabilities are fixed in current releases of Percona Server for MySQL and Percona XtraDB Cluster:

    CVE-2016-6663: allows a local system user with access to the affected database in the context of a low-privileged account (CREATE/INSERT/SELECT grants) to escalate their privileges and execute arbitrary code as the database system user (typically “mysql”).
    CVE-2016-6664: can let attackers who have gained access to mysql system user to further escalate their privileges to root user allowing them to fully compromise the system.

Users should upgrade to their relevant incremental release.

Percona Server

    5.5.51-38.2

    5.6.32-78-1
    5.7.14-8

Percona XtraDB Cluster

    5.5.41-37.0

    5.6.32-25.17

    5.7.14-26.17

Users should update as soon as is practical to ensure protection from these vulnerabilities.
Comment 1 Thomas Deutschmann (RETIRED) gentoo-dev 2016-11-09 20:01:55 UTC
Is isn't clear from the original report in bug 123 if =dev-db/percona-server-5.6.32.78.1 (the version which should be safe according to Percona) is affected or not:

The "Affected" listing indicates agreement with Percona due to "<5.6.32-78-1" notation. However the advisory demonstrate the vulnerability against _that_ version later...

So we will also remove =dev-db/percona-server-5.6.32.78.1 from tree.
Comment 2 Thomas Deutschmann (RETIRED) gentoo-dev 2016-11-09 20:09:51 UTC
Forget the previous comment. The advisory was about 5.6.32-78-0
                                                             ^^^

The fix is explicit listed in 5.6.32-78-1
                                       ^^^

So all done for dev-db/percona-server.