Oracle MySQL Server Denial-of-Service Vulnerability in Optimizer Component

Vulnerability

A denial-of-service vulnerability has been identified in the MySQL Server product of Oracle MySQL, specifically within the Optimizer component. This issue affects supported versions 8.0.0 through 8.0.42, 8.4.0 through 8.4.5, and 9.0.0 through 9.3.0. The vulnerability is easily exploitable, allowing a low-privileged attacker with network access via multiple protocols to disrupt MySQL Server operations. Successful exploitation can lead to a complete denial-of-service condition, causing the server to hang or crash frequently and repetitively.

Impact

Exploitation of this vulnerability can cause MySQL Server to hang or crash, leading to a complete denial-of-service condition.

Added: Jul 15, 2025, 10:02 PM
Updated: Jul 15, 2025, 10:02 PM

Vulnerability Rating

Custom Algorithm
spread
8.7
impact
2.5
exploitability
4.9
remediation
0.0
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.