PT-2025-29639 · Oracle+7 · Oracle Mysql+7

Published

2025-07-15

·

Updated

2025-10-06

·

CVE-2025-50086

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Oracle MySQL versions 8.0.0 through 8.0.42 Oracle MySQL versions 8.4.0 through 8.4.5 Oracle MySQL versions 9.0.0 through 9.3.0
Description This issue affects the Server: Components Services component of Oracle MySQL. A high-privileged attacker with network access can compromise MySQL Server through multiple protocols. Successful exploitation can lead to a denial-of-service (DOS) condition, causing a hang or frequent crashes of the server.
Recommendations Update Oracle MySQL to a version later than 8.0.42. Update Oracle MySQL to a version later than 8.4.5. Update Oracle MySQL to a version later than 9.3.0.

Fix

DoS

Incorrect Authorization

Weakness Enumeration

Related Identifiers

ALSA-2025:15699
ALSA-2025:16046
ALSA-2025:16086
ALSA-2025:16861
AZL-65297
AZL-65459
BDU:2025-08703
CESA-2025_16861
CVE-2025-50086
INFSA-2025_16046
INFSA-2025_16086
INFSA-2025_16861
OESA-2025-2085
RHSA-2025:16861
RHSA-2025_16046
RHSA-2025_16086
RHSA-2025_16861
USN-7691-1
USN-7691-2

Affected Products

Almalinux
Centos
Linuxmint
Mysql Server
Oracle Mysql
Red Hat
Rocky Linux
Ubuntu