{"id":"CGA-qj97-w2v9-7f6p","modified":"2026-07-31T08:13:58.608891236Z","published":"2025-11-04T04:37:18Z","withdrawn":"2026-07-31T08:13:58.608891117Z","upstream":["CVE-2016-6663","GHSA-g76x-xjc6-4pgh"],"references":[{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/93614"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2131.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2749.html"},{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/92911"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2130.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2595.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2017-0184.html"},{"type":"ADVISORY","url":"https://mariadb.com/kb/en/mariadb/mariadb-10028-release-notes/"},{"type":"ADVISORY","url":"https://mariadb.com/kb/en/mariadb/mariadb-5552-release-notes/"},{"type":"ADVISORY","url":"http://seclists.org/fulldisclosure/2016/Nov/4"},{"type":"ADVISORY","url":"https://mariadb.com/kb/en/mariadb/mariadb-10118-release-notes/"},{"type":"ADVISORY","url":"https://www.percona.com/blog/2016/11/02/percona-responds-to-cve-2016-6663-and-cve-2016-6664/"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2927.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-2928.html"},{"type":"ADVISORY","url":"http://www.openwall.com/lists/oss-security/2016/10/25/4"},{"type":"REPORT","url":"https://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-52.html"},{"type":"REPORT","url":"https://dev.mysql.com/doc/relnotes/mysql/5.6/en/news-5-6-33.html"},{"type":"REPORT","url":"https://dev.mysql.com/doc/relnotes/mysql/5.7/en/news-5-7-15.html"},{"type":"REPORT","url":"https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-1.html"},{"type":"FIX","url":"http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html"},{"type":"FIX","url":"https://github.com/MariaDB/server/commit/347eeefbfc658c8531878218487d729f4e020805"},{"type":"FIX","url":"https://github.com/mysql/mysql-server/commit/4e5473862e6852b0f3802b0cd0c6fa10b5253291"},{"type":"EVIDENCE","url":"https://legalhackers.com/advisories/MySQL-Maria-Percona-PrivEscRace-CVE-2016-6663-5616-Exploit.html"},{"type":"EVIDENCE","url":"https://www.exploit-db.com/exploits/40678/"}],"affected":[{"package":{"name":"mysql-8.0-bitnami-compat","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/mysql-8.0-bitnami-compat?arch=x86_64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"8.0.38-r0"}]}],"ecosystem_specific":{"components":[{"component_type":"binary","component_location":"/usr/bin/mysql","component_purl":"","latest_event_status":"fixed","latest_event_timestamp":"2024-07-04T21:19:34Z","architecture":"x86_64","component_name":"mysql","component_version":"8.0"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-qj97-w2v9-7f6p.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}