PT-2025-29634 · Oracle+6 · Mysqldump+7

Matthieu Denais

·

Published

2025-07-15

·

Updated

2025-10-06

·

CVE-2025-50081

CVSS v2.0

3.6

Low

VectorAV:N/AC:H/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Oracle MySQL versions 8.0.0 through 8.0.42 Oracle MySQL versions 8.4.0 through 8.4.5 Oracle MySQL versions 9.0.0 through 9.3.0
Description A difficult-to-exploit issue exists in the MySQL Client component (mysqldump) of Oracle MySQL. Successful attacks require human interaction from a person other than the attacker and network access via multiple protocols. Exploitation can lead to unauthorized data modification (update, insert, delete) and read access to some MySQL Client accessible data.
Recommendations Oracle MySQL versions prior to 8.0.43 Oracle MySQL versions prior to 8.4.6 Oracle MySQL versions prior to 9.3.1

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

ALSA-2025:15699
ALSA-2025:16046
ALSA-2025:16086
ALSA-2025:16861
AZL-65523
AZL-65529
BDU:2025-08654
CESA-2025_16861
CVE-2025-50081
INFSA-2025_16046
INFSA-2025_16086
INFSA-2025_16861
OESA-2025-2085
RHSA-2025:16861
RHSA-2025_16046
RHSA-2025_16086
RHSA-2025_16861
USN-7691-1
USN-7691-2

Affected Products

Almalinux
Centos
Linuxmint
Mysql Server
Red Hat
Rocky Linux
Ubuntu
Mysqldump