PT-2025-29654 · Oracle+7 · Oracle Mysql+7
Yx
·
Published
2025-07-15
·
Updated
2025-10-06
·
CVE-2025-50101
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Oracle MySQL versions 8.0.0 through 8.0.42
Oracle MySQL versions 8.4.0 through 8.4.5
Oracle MySQL versions 9.0.0 through 9.3.0
Description
A vulnerability exists in the Server: Optimizer component of Oracle MySQL Server. A high-privileged attacker with network access via multiple protocols can compromise the server. Successful exploitation can lead to a denial-of-service (DOS) condition, causing a hang or frequent crashes of the MySQL Server.
Recommendations
Update Oracle MySQL to a version later than 8.0.42.
Update Oracle MySQL to a version later than 8.4.5.
Update Oracle MySQL to a version later than 9.3.0.
Fix
DoS
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Almalinux
Centos
Linuxmint
Mysql Server
Oracle Mysql
Red Hat
Rocky Linux
Ubuntu