Cyber Resilience

CVE-2016-6662

Redhat Openstack 5.0 … 9

Public PoCHigh EPSS
Published
20 September 2016
Modified
06 May 2026
Patch / advisory
CVSS Score v3 9.8
Click a component to see what it means
Raw vectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score 0.68 99.2th percentile
Risk Priority 97 floored blend · peak EPSS

Summary

CVE-2016-6662 is a critical-severity an unspecified weakness vulnerability in Redhat Openstack. Its CVSS base score is 9.8 (Critical).

Operationally, ranked in the top 0.8% of CVEs by exploit likelihood; it is not currently listed in the CISA KEV catalog; a public proof-of-concept is referenced.

EU & UK References

Vulnerability Data

Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5.7.15; MariaDB before 5.5.51, 10.0.x before 10.0.27, and 10.1.x before 10.1.17; and Percona Server before 5.5.51-38.1, 5.6.x before 5.6.32-78.0, and 5.7.x before 5.7.14-7 allow local users to create arbitrary configurations…

more

and bypass certain protection mechanisms by setting general_log_file to a my.cnf configuration. NOTE: this can be leveraged to execute arbitrary code with root privileges by setting malloc_lib. NOTE: the affected MySQL version information is from Oracle's October 2016 CPU. Oracle has not commented on third-party claims that the issue was silently patched in MySQL 5.5.52, 5.6.33, and 5.7.15.

CWE(s)

Related Threats

Likely ATT&CK TechniquesAI

Techniques this vulnerability likely enables, inferred from its description, weakness type, and attributed-actor tradecraft. Confidence is per-technique.

T1543.003 Windows Service Persistenceconfidence: HIGH
Writing arbitrary my.cnf via general_log_file enables creation of a malicious Windows service or systemd unit that executes attacker-controlled code at startup.
T1574.006 Dynamic Linker Hijacking Stealthconfidence: HIGH
Setting malloc_lib in the attacker-controlled my.cnf forces the MySQL server (running as root) to load an arbitrary shared library, hijacking execution flow.
T1068 Exploitation for Privilege Escalation Privilege Escalationconfidence: HIGH
Local file-write primitive is directly used to escalate privileges by loading attacker-controlled code into the root-privileged MySQL process.
inferred from description + CWE · MITRE ATT&CK Enterprise v19.0

CVEs Like This One

CVE-2017-17405Same product: Debian Debian Linux
CVE-2018-17456Same product: Debian Debian Linux
CVE-2023-2255Same product: Debian Debian Linux
CVE-2017-9788Same product: Debian Debian Linux
CVE-2017-8291Same product: Debian Debian Linux
CVE-2019-15605Same product: Debian Debian Linux
CVE-2016-9079Same product: Debian Debian Linux
CVE-2016-5388Same product: Redhat Enterprise Linux Desktop
CVE-2018-17480Same product: Debian Debian Linux
CVE-2018-17463Same product: Debian Debian Linux

Affected Assets

oracle
mysql
5.5.0 — 5.5.52 · 5.6.0 — 5.6.33 · 5.7.0 — 5.7.15
percona
percona server
5.5 — 5.5.51-38.1 · 5.6 — 5.6.32-78.0 · 5.7 — 5.7.14-7
mariadb
mariadb
5.5.20 — 5.5.51 · 10.0.0 — 10.0.27 · 10.1.0 — 10.1.17
debian
debian linux
8.0
redhat
openstack
5.0, 6.0, 7.0, 8, 9
redhat
enterprise linux
7.0
redhat
enterprise linux desktop
6.0, 7.0
redhat
enterprise linux server
6.0
redhat
enterprise linux server aus
7.3, 7.4, 7.6
redhat
enterprise linux server eus
7.3, 7.4, 7.5, 7.6
+2 more product configuration(s) — see NVD for full list

Mitigating Controls

No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.

References