Oracle MySQL
cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*
- <= 8.0.40
- <= 8.4.3
- <= 9.1.0
A denial-of-service vulnerability has been identified in the MySQL Server product of Oracle MySQL, specifically within the InnoDB component. This issue affects supported versions 8.0.40 and prior, 8.4.3 and prior, and 9.1.0 and prior. The vulnerability is easily exploitable by a high-privileged attacker with network access through multiple protocols, allowing them to cause a hang or a frequently repeatable crash of the MySQL Server.
Exploitation of this vulnerability leads to a complete denial-of-service condition, causing MySQL Server to hang or crash frequently and repeatedly.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.