CVE-2016-6662

CRITICAL EXPLOITED LAB

Oracle MySQL, MariaDB, Percona Server - Privilege Escalation via my.cnf

Title source: llm

Description

Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5.7.15; MariaDB before 5.5.51, 10.0.x before 10.0.27, and 10.1.x before 10.1.17; and Percona Server before 5.5.51-38.1, 5.6.x before 5.6.32-78.0, and 5.7.x before 5.7.14-7 allow local users to create arbitrary configurations and bypass certain protection mechanisms by setting general_log_file to a my.cnf configuration. NOTE: this can be leveraged to execute arbitrary code with root privileges by setting malloc_lib. NOTE: the affected MySQL version information is from Oracle's October 2016 CPU. Oracle has not commented on third-party claims that the issue was silently patched in MySQL 5.5.52, 5.6.33, and 5.7.15.

Exploits (9)

exploitdb WORKING POC
by Dawid Golunski · pythonlocallinux
https://www.exploit-db.com/exploits/40360
nomisec WORKING POC 29 stars
by MAYASEVEN · poc
https://github.com/MAYASEVEN/CVE-2016-6662
nomisec WORKING POC 9 stars
by Ashrafdev · remote-auth
https://github.com/Ashrafdev/MySQL-Remote-Root-Code-Execution
nomisec WORKING POC 1 stars
by boompig · remote
https://github.com/boompig/cve-2016-6662
nomisec WRITEUP 1 stars
by meersjo · poc
https://github.com/meersjo/ansible-mysql-cve-2016-6662
nomisec WORKING POC
by LSQUARE14 · poc
https://github.com/LSQUARE14/SQL_to_RCE_Lab
nomisec WORKING POC
by KosukeShimofuji · poc
https://github.com/KosukeShimofuji/CVE-2016-6662
nomisec WRITEUP
by konstantin-kelemen · poc
https://github.com/konstantin-kelemen/mysqld_safe-CVE-2016-6662-patch

References (27)

... and 7 more

Scores

CVSS v3 9.8
EPSS 0.8958
EPSS Percentile 99.6%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

VulnCheck KEV 2024-05-14
CWE
CWE-264
Status published
Products (24)
debian/debian_linux 8.0
mariadb/mariadb 5.5.20 - 5.5.51
oracle/mysql 5.5.0 - 5.5.52
percona/percona_server 5.5 - 5.5.51-38.1
redhat/enterprise_linux 7.0
redhat/enterprise_linux_desktop 6.0
redhat/enterprise_linux_desktop 7.0
redhat/enterprise_linux_server 6.0
redhat/enterprise_linux_server_aus 7.3
redhat/enterprise_linux_server_aus 7.4
... and 14 more
Published Sep 20, 2016
Tracked Since Feb 18, 2026