PT-2025-29636 · Oracle+7 · Oracle Mysql+7
Jie Liang
+2
·
Published
2025-07-15
·
Updated
2025-10-06
·
CVE-2025-50083
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Oracle MySQL versions 8.0.0 through 8.0.42
Oracle MySQL versions 8.4.0 through 8.4.5
Oracle MySQL versions 9.0.0 through 9.3.0
Description
A vulnerability exists in the Server: Optimizer component of Oracle MySQL Server. A low-privileged attacker with network access can compromise the server through multiple protocols. Successful exploitation can lead to a denial-of-service (DOS) condition, causing a hang or frequent crashes of the MySQL Server.
Recommendations
Update Oracle MySQL to a version beyond 8.0.42.
Update Oracle MySQL to a version beyond 8.4.5.
Update Oracle MySQL to a version beyond 9.3.0.
Fix
DoS
Resource Exhaustion
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Almalinux
Centos
Linuxmint
Mysql Server
Oracle Mysql
Red Hat
Rocky Linux
Ubuntu