Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.5.57 and earlier, 5.6.37 and earlier and 5.7.11 and earlier. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
{
"unresolved_ranges": [
{
"extracted_events": [
{
"introduced": "7.3"
},
{
"introduced": "9.5"
}
],
"source": "CPE_RANGE",
"cpes": [
"cpe:2.3:a:netapp:active_iq_unified_manager:*:*:*:*:*:vmware_vsphere:*:*",
"cpe:2.3:a:netapp:active_iq_unified_manager:*:*:*:*:*:windows:*:*"
],
"vendor_product": "netapp:active_iq_unified_manager"
},
{
"extracted_events": [
{
"last_affected": "7.1"
},
{
"last_affected": "7.1"
}
],
"source": "CPE_RANGE",
"cpes": [
"cpe:2.3:a:netapp:oncommand_unified_manager:*:*:*:*:*:vsphere:*:*",
"cpe:2.3:a:netapp:oncommand_unified_manager:*:*:*:*:*:windows:*:*"
],
"vendor_product": "netapp:oncommand_unified_manager"
},
{
"extracted_events": [
{
"last_affected": "8.0"
},
{
"last_affected": "9.0"
}
],
"source": "CPE_STRING",
"cpes": [
"cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*",
"cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
],
"vendor_product": "debian:debian_linux"
},
{
"extracted_events": [
{
"last_affected": "7.0"
}
],
"source": "CPE_STRING",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:enterprise_linux_desktop"
},
{
"extracted_events": [
{
"last_affected": "7.5"
},
{
"last_affected": "7.6"
},
{
"last_affected": "7.7"
}
],
"source": "CPE_STRING",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux_eus:7.6:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux_eus:7.7:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:enterprise_linux_eus"
},
{
"extracted_events": [
{
"last_affected": "7.0"
}
],
"source": "CPE_STRING",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:enterprise_linux_server"
},
{
"extracted_events": [
{
"last_affected": "7.6"
},
{
"last_affected": "7.7"
}
],
"source": "CPE_STRING",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:enterprise_linux_server_aus"
},
{
"extracted_events": [
{
"last_affected": "7.6"
},
{
"last_affected": "7.7"
}
],
"source": "CPE_STRING",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:enterprise_linux_server_tus"
},
{
"extracted_events": [
{
"last_affected": "7.0"
}
],
"source": "CPE_STRING",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:enterprise_linux_workstation"
},
{
"extracted_events": [
{
"last_affected": "12"
}
],
"source": "CPE_STRING",
"cpes": [
"cpe:2.3:a:redhat:openstack:12:*:*:*:*:*:*:*"
],
"vendor_product": "redhat:openstack"
}
]
}{
"cpe": "cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "5.5.0"
},
{
"fixed": "5.5.58"
},
{
"introduced": "10.0.0"
},
{
"fixed": "10.0.33"
},
{
"introduced": "10.1.0"
},
{
"fixed": "10.1.29"
},
{
"introduced": "10.2.0"
},
{
"fixed": "10.2.10"
}
],
"source": "CPE_RANGE"
}[
{
"signature_type": "Function",
"digest": {
"length": 1930.0,
"function_hash": "229436509491359859587976164905941824146"
},
"id": "CVE-2017-10378-0500cd26",
"deprecated": false,
"signature_version": "v1",
"source": "https://github.com/mariadb/server/commit/58e0dcb93dc2b2bf49f76c754bd216dbdf875a0d",
"target": {
"function": "os_file_set_size",
"file": "storage/innobase/os/os0file.cc"
}
},
{
"signature_type": "Line",
"digest": {
"line_hashes": [
"199074947337376739812679047825821336002",
"46725345608552447089949872245821081371",
"119120488045980108076426049636030945131",
"58230573690248886038051992579509304232",
"326895143270909796380178638763687471280",
"263146896042637856319085632199764889177",
"122131190033688622756744393943115563446",
"133068113502970118870593079691731269775",
"111890012607856213573104663272595866488",
"61566547659338840586290761302690848319",
"313474223702629979055129385503607972230"
],
"threshold": 0.9
},
"id": "CVE-2017-10378-6ad32b91",
"deprecated": false,
"signature_version": "v1",
"source": "https://github.com/mariadb/server/commit/58e0dcb93dc2b2bf49f76c754bd216dbdf875a0d",
"target": {
"file": "storage/innobase/os/os0file.cc"
}
},
{
"signature_type": "Line",
"digest": {
"line_hashes": [
"288478675654118026472906435977381342765",
"77128588242836736274151580826871914954",
"278995216876158915401313692667681240533",
"282846413856269834796276352123467562693",
"80088993081502469842219226733844912314",
"179417024652175460309708312811008504317"
],
"threshold": 0.9
},
"id": "CVE-2017-10378-9c92b764",
"deprecated": false,
"signature_version": "v1",
"source": "https://github.com/mariadb/server/commit/05103c84ecc519eae4090b720f48203a648e2ab9",
"target": {
"file": "sql/mysqld.cc"
}
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-10378.json"
"2026-05-30T08:41:23Z"
{
"cpe": "cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "5.5.0"
},
{
"last_affected": "5.5.57"
},
{
"introduced": "5.6.0"
},
{
"last_affected": "5.6.37"
},
{
"introduced": "5.7.0"
},
{
"last_affected": "5.7.11"
}
],
"source": "CPE_RANGE"
}