Lucene search

K
redhatcveRedhat.comRH:CVE-2017-3305
HistoryMar 17, 2017 - 12:53 p.m.

CVE-2017-3305

2017-03-1712:53:05
redhat.com
access.redhat.com
14

0.002 Low

EPSS

Percentile

55.4%

It was discovered that the MySQL client command line tools only checked after authentication whether server supported SSL. A man-in-the-middle attacker could use this flaw to hijack client’s authentication to the server even if the client was configured to require SSL connection.