{"affected":[{"ecosystem_specific":{"binaries":[{"libmysql55client_r18-32bit":"5.5.62-0.39.18.1","libmysql55client_r18-x86":"5.5.62-0.39.18.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Software Development Kit 11 SP4","name":"mysql","purl":"pkg:rpm/suse/mysql&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.5.62-0.39.18.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libmysql55client18":"5.5.62-0.39.18.1","libmysql55client_r18":"5.5.62-0.39.18.1","mysql":"5.5.62-0.39.18.1","mysql-client":"5.5.62-0.39.18.1","mysql-tools":"5.5.62-0.39.18.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Point of Sale 11 SP3","name":"mysql","purl":"pkg:rpm/suse/mysql&distro=SUSE%20Linux%20Enterprise%20Point%20of%20Sale%2011%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.5.62-0.39.18.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libmysql55client18":"5.5.62-0.39.18.1","libmysql55client18-32bit":"5.5.62-0.39.18.1","libmysql55client_r18":"5.5.62-0.39.18.1","mysql":"5.5.62-0.39.18.1","mysql-client":"5.5.62-0.39.18.1","mysql-tools":"5.5.62-0.39.18.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 11 SP3-LTSS","name":"mysql","purl":"pkg:rpm/suse/mysql&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP3-LTSS"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.5.62-0.39.18.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libmysql55client18":"5.5.62-0.39.18.1","libmysql55client18-32bit":"5.5.62-0.39.18.1","libmysql55client_r18":"5.5.62-0.39.18.1","mysql":"5.5.62-0.39.18.1","mysql-client":"5.5.62-0.39.18.1","mysql-tools":"5.5.62-0.39.18.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 11 SP3-TERADATA","name":"mysql","purl":"pkg:rpm/suse/mysql&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP3-TERADATA"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.5.62-0.39.18.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libmysql55client18":"5.5.62-0.39.18.1","libmysql55client18-32bit":"5.5.62-0.39.18.1","libmysql55client18-x86":"5.5.62-0.39.18.1","libmysql55client_r18":"5.5.62-0.39.18.1","libmysql55client_r18-32bit":"5.5.62-0.39.18.1","libmysql55client_r18-x86":"5.5.62-0.39.18.1","mysql":"5.5.62-0.39.18.1","mysql-client":"5.5.62-0.39.18.1","mysql-tools":"5.5.62-0.39.18.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 11 SP4","name":"mysql","purl":"pkg:rpm/suse/mysql&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.5.62-0.39.18.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"libmysql55client18":"5.5.62-0.39.18.1","libmysql55client18-32bit":"5.5.62-0.39.18.1","libmysql55client18-x86":"5.5.62-0.39.18.1","libmysql55client_r18":"5.5.62-0.39.18.1","libmysql55client_r18-32bit":"5.5.62-0.39.18.1","libmysql55client_r18-x86":"5.5.62-0.39.18.1","mysql":"5.5.62-0.39.18.1","mysql-client":"5.5.62-0.39.18.1","mysql-tools":"5.5.62-0.39.18.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 11 SP4","name":"mysql","purl":"pkg:rpm/suse/mysql&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.5.62-0.39.18.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"\n  \nMySQL server was updated to version 5.5.62, fixing bugs and security issues.\n\nChanges:\n\n    http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-62.html\n\nFollowing security issues were fixed:\n\n- CVE-2016-9843: The crc32_big function in zlib might have allowed context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation. (bsc#1013882)\n  Please note that SUSE uses the system zlib, not the embedded copy.\n\n- CVE-2018-3133: Authenticated low privilege attackers could cause denial of service attacks (hangs or crashes) against the mysql server (bsc#1112369)\n- CVE-2018-3174: Authenticated high privilege attackers could cause denial of service attacks (hangs or crashes) against the mysql server (bsc#1112368)\n- CVE-2018-3282: Authenticated high privilege attackers could cause denial of service attacks (hangs or crashes) against the mysql server (bsc#1112432)\n","id":"SUSE-SU-2018:3542-1","modified":"2018-10-29T05:47:55Z","published":"2018-10-29T05:47:55Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2018/suse-su-20183542-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1013882"},{"type":"REPORT","url":"https://bugzilla.suse.com/1112368"},{"type":"REPORT","url":"https://bugzilla.suse.com/1112369"},{"type":"REPORT","url":"https://bugzilla.suse.com/1112432"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-9843"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-3133"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-3174"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-3282"}],"related":["CVE-2016-9843","CVE-2018-3133","CVE-2018-3174","CVE-2018-3282"],"summary":"Security update for mysql","upstream":["CVE-2016-9843","CVE-2018-3133","CVE-2018-3174","CVE-2018-3282"]}