PT-2025-29644 · Oracle+7 · Mysql 9.0+10
Published
2025-07-15
·
Updated
2025-10-06
·
CVE-2025-50091
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Oracle MySQL versions 8.0.0 through 8.0.42
Oracle MySQL versions 8.4.0 through 8.4.5
Oracle MySQL versions 9.0.0 through 9.3.0
Description
A vulnerability exists in the Optimizer component of Oracle MySQL Server that allows a high-privileged attacker with network access to cause a denial-of-service (DOS) condition, potentially leading to a hang or frequent crashes of the server.
Recommendations
Oracle MySQL versions 8.0.0 through 8.0.42: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Oracle MySQL versions 8.4.0 through 8.4.5: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Oracle MySQL versions 9.0.0 through 9.3.0: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Almalinux
Centos
Linuxmint
Mysql 8.0
Mysql 8.4
Mysql 9.0
Mysql Server
Oracle Mysql
Red Hat
Rocky Linux
Ubuntu