PT-2025-42950 · Oracle+7 · Mysql Server+6

Published

2025-10-21

·

Updated

2026-02-03

·

CVE-2025-53053

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:S/C:N/I:P/A:C
Name of the Vulnerable Software and Affected Versions Oracle MySQL versions 8.0.0 through 8.0.43 Oracle MySQL versions 8.4.0 through 8.4.6 Oracle MySQL versions 9.0.0 through 9.4.0
Description A flaw exists in the MySQL Server component of Oracle MySQL (Server: DML) that could allow a high-privileged attacker with network access to compromise the server. Exploitation via multiple protocols can lead to a denial-of-service condition, causing the server to hang or crash. Successful attacks may also result in unauthorized modification, insertion, or deletion of data within the MySQL Server.
Recommendations Update MySQL Server to a version beyond 8.0.43 Update MySQL Server to a version beyond 8.4.6 Update MySQL Server to a version beyond 9.4.0

Fix

DoS

Resource Exhaustion

Weakness Enumeration

Related Identifiers

ALSA-2025:23008
ALSA-2025:23109
ALSA-2025:23111
ALSA-2025:23134
ALSA-2025:23137
AZL-68649
BDU:2025-15864
CVE-2025-53053
OESA-2025-2540
OESA-2025-2541
OESA-2025-2542
OESA-2025-2543
OESA-2025-2544
OESA-2025-2644
USN-7873-1
USN-8006-1

Affected Products

Almalinux
Centos
Linuxmint
Mysql Server
Red Hat
Rocky Linux
Ubuntu