Home

Description

Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server. CVSS 3.1 Base Score 3.1 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L).

PUBLISHED Reserved 2023-12-07 | Published 2024-10-15 | Updated 2025-11-03 | Assigner oracle




LOW: 3.1CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L

Problem types

Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server.

Product status

* (custom)
affected

* (custom)
affected

* (custom)
affected

References

security.netapp.com/advisory/ntap-20241025-0006/

www.oracle.com/security-alerts/cpuoct2024.html (Oracle Advisory) vendor-advisory

cve.org (CVE-2024-21231)

nvd.nist.gov (CVE-2024-21231)

Download JSON