4.1 Ensure the Latest Security Patches are Applied

Information

Periodically, updates to MySQL server are released to resolve bugs, mitigate vulnerabilities, and provide new features. It is recommended that MySQL installations are up to date with the latest security updates.

Maintaining currency with MySQL patches will help reduce risk associated with known vulnerabilities present in the MySQL server.

Without the latest security patches MySQL might have known vulnerabilities which could be used by an attacker to gain access.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Install the latest patches for your version or upgrade to the latest version.

Impact:

To update the MySQL server a restart is required.

See Also

https://workbench.cisecurity.org/benchmarks/15504

Item Details

Category: SYSTEM AND SERVICES ACQUISITION

References: 800-53|SA-22, CSCv7|2.2

Plugin: MySQLDB

Control ID: 5ef0d12958409e080ec92abd5d9f3599faacedd0784d33e0e5e0d8953482fac4