Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS v3.0 Base Score 6.5 (Availability impacts).
{
"unresolved_ranges": [
{
"extracted_events": [
{
"last_affected": "8.0"
}
],
"vendor_product": "debian:debian_linux",
"cpes": [
"cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
],
"source": "CPE_FIELD"
},
{
"extracted_events": [
{
"last_affected": "7.0"
}
],
"vendor_product": "redhat:enterprise_linux_desktop",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
],
"source": "CPE_FIELD"
},
{
"extracted_events": [
{
"last_affected": "7.4"
},
{
"last_affected": "7.5"
},
{
"last_affected": "7.6"
},
{
"last_affected": "7.7"
}
],
"vendor_product": "redhat:enterprise_linux_eus",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_eus:7.4:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux_eus:7.6:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux_eus:7.7:*:*:*:*:*:*:*"
],
"source": "CPE_FIELD"
},
{
"extracted_events": [
{
"last_affected": "7.0"
}
],
"vendor_product": "redhat:enterprise_linux_server",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
],
"source": "CPE_FIELD"
},
{
"extracted_events": [
{
"last_affected": "7.4"
},
{
"last_affected": "7.6"
},
{
"last_affected": "7.7"
}
],
"vendor_product": "redhat:enterprise_linux_server_aus",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*"
],
"source": "CPE_FIELD"
},
{
"extracted_events": [
{
"last_affected": "7.6"
},
{
"last_affected": "7.7"
}
],
"vendor_product": "redhat:enterprise_linux_server_tus",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*"
],
"source": "CPE_FIELD"
},
{
"extracted_events": [
{
"last_affected": "7.0"
}
],
"vendor_product": "redhat:enterprise_linux_workstation",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
],
"source": "CPE_FIELD"
}
]
}{
"extracted_events": [
{
"introduced": "5.5.0"
},
{
"fixed": "5.5.54"
},
{
"introduced": "10.0.0"
},
{
"fixed": "10.0.29"
},
{
"introduced": "10.1.0"
},
{
"fixed": "10.1.21"
}
],
"cpe": "cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:*",
"source": "CPE_FIELD"
}"2026-05-18T11:10:06Z"
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-3238.json"
[
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/mariadb/server/commit/5fc1ba604e27b7d9eaa2977ef5b0c180f6f62565",
"target": {
"function": "wsrep_calc_row_hash",
"file": "storage/xtradb/handler/ha_innodb.cc"
},
"deprecated": false,
"id": "CVE-2017-3238-2235861b",
"digest": {
"function_hash": "326577626690167958606778565745841641029",
"length": 1075.0
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/mariadb/server/commit/5fc1ba604e27b7d9eaa2977ef5b0c180f6f62565",
"target": {
"function": "wsrep_store_key_val_for_row",
"file": "storage/xtradb/handler/ha_innodb.cc"
},
"deprecated": false,
"id": "CVE-2017-3238-76d7bb16",
"digest": {
"function_hash": "175766638502419520218478376205151830061",
"length": 4678.0
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/mariadb/server/commit/5fc1ba604e27b7d9eaa2977ef5b0c180f6f62565",
"target": {
"file": "storage/xtradb/handler/ha_innodb.cc"
},
"deprecated": false,
"id": "CVE-2017-3238-d7841ca0",
"digest": {
"line_hashes": [
"333910009814716899599761924093289489726",
"161392224999518567510718607174078569010",
"161097539754424727880941917296259394470",
"86950865214847603434991963376525204394",
"149603238303571009756227611135528613560",
"246754121958178494555659751381354980297",
"112180117738318881565344278433296106535",
"56934855970519006216491266214889014278",
"177233899003535037117533813868483428969",
"91781135331166554714959393998795539181",
"231826346572631787101747650932251996807",
"120129231197026531763378830534168927209",
"78750874032296690609296176761798461946",
"37466225183381131843040316628502534513",
"73966958620296014639090697993023755838",
"302517151867660583156292446738041253690",
"320251111942484271165771358375346713457",
"137617643939518963627606737565894291194"
],
"threshold": 0.9
}
}
]
{
"extracted_events": [
{
"introduced": "5.5.0"
},
{
"last_affected": "5.5.53"
},
{
"introduced": "5.6.0"
},
{
"last_affected": "5.6.34"
},
{
"introduced": "5.7.0"
},
{
"last_affected": "5.7.16"
}
],
"cpe": "cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:*",
"source": "CPE_FIELD"
}