CVE-2016-1251

UnknownEPSS 3.12%

Last modified

CVE-2016-1251 is a vulnerability of currently unknown severity. There is a vulnerability of type use-after-free affecting DBD::mysql (aka DBD-mysql or the Database Interface (DBI) MySQL driver for Perl) 3.x and 4.x before 4.041 when used with mysql_server_prepare=1.. EPSS estimates a 3.12% chance of exploitation in the next 30 days.

Description

There is a vulnerability of type use-after-free affecting DBD::mysql (aka DBD-mysql or the Database Interface (DBI) MySQL driver for Perl) 3.x and 4.x before 4.041 when used with mysql_server_prepare=1.

Metrics

EPSS Probability
3.12%

86.1th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
Dbd-Mysql ProjectDbd-Mysql3.0000_0
Dbd-Mysql ProjectDbd-Mysql3.0001_1
Dbd-Mysql ProjectDbd-Mysql3.0001_2
Dbd-Mysql ProjectDbd-Mysql3.0001_3
Dbd-Mysql ProjectDbd-Mysql3.0002_1
Dbd-Mysql ProjectDbd-Mysql3.0002_2
Dbd-Mysql ProjectDbd-Mysql3.0002_3
Dbd-Mysql ProjectDbd-Mysql3.0002_4
Dbd-Mysql ProjectDbd-Mysql3.0002_5
Dbd-Mysql ProjectDbd-Mysql3.0003_1
Dbd-Mysql ProjectDbd-Mysql3.0004_1
Dbd-Mysql ProjectDbd-Mysql3.0005
Dbd-Mysql ProjectDbd-Mysql3.0005_1
Dbd-Mysql ProjectDbd-Mysql3.0007_2
Dbd-Mysql ProjectDbd-Mysql3.0008_1
Dbd-Mysql ProjectDbd-Mysql3.0009_1
Dbd-Mysql ProjectDbd-Mysql4.00
Dbd-Mysql ProjectDbd-Mysql4.001
Dbd-Mysql ProjectDbd-Mysql4.002
Dbd-Mysql ProjectDbd-Mysql4.003
Dbd-Mysql ProjectDbd-Mysql4.004
Dbd-Mysql ProjectDbd-Mysql4.005
Dbd-Mysql ProjectDbd-Mysql4.006
Dbd-Mysql ProjectDbd-Mysql4.007
Dbd-Mysql ProjectDbd-Mysql4.008
Dbd-Mysql ProjectDbd-Mysql4.009
Dbd-Mysql ProjectDbd-Mysql4.010
Dbd-Mysql ProjectDbd-Mysql4.011
Dbd-Mysql ProjectDbd-Mysql4.012
Dbd-Mysql ProjectDbd-Mysql4.013
Dbd-Mysql ProjectDbd-Mysql4.014
Dbd-Mysql ProjectDbd-Mysql4.015
Dbd-Mysql ProjectDbd-Mysql4.016
Dbd-Mysql ProjectDbd-Mysql4.017
Dbd-Mysql ProjectDbd-Mysql4.018
Dbd-Mysql ProjectDbd-Mysql4.019
Dbd-Mysql ProjectDbd-Mysql4.020
Dbd-Mysql ProjectDbd-Mysql4.021
Dbd-Mysql ProjectDbd-Mysql4.022
Dbd-Mysql ProjectDbd-Mysql4.023
Dbd-Mysql ProjectDbd-Mysql4.024
Dbd-Mysql ProjectDbd-Mysql4.025
Dbd-Mysql ProjectDbd-Mysql4.026
Dbd-Mysql ProjectDbd-Mysql4.027
Dbd-Mysql ProjectDbd-Mysql4.028
Dbd-Mysql ProjectDbd-Mysql4.029
Dbd-Mysql ProjectDbd-Mysql4.030_01
Dbd-Mysql ProjectDbd-Mysql4.030_02
Dbd-Mysql ProjectDbd-Mysql4.031
Dbd-Mysql ProjectDbd-Mysql4.032

Showing 50 of 69 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2016-1251?
There is a vulnerability of type use-after-free affecting DBD::mysql (aka DBD-mysql or the Database Interface (DBI) MySQL driver for Perl) 3.x and 4.x before 4.041 when used with mysql_server_prepare=1.
How severe is CVE-2016-1251?
Severity scoring for CVE-2016-1251 is pending analysis. The EPSS model estimates a 3.12% probability of exploitation in the next 30 days.
How do I fix CVE-2016-1251?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2016-1251?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST