Oracle MySQL Server
cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*
- >= 8.0.0, <= 8.0.45
- >= 8.4.0, <= 8.4.8
- >= 9.0.0, <= 9.6.0
A denial-of-service vulnerability has been identified in the MySQL Server product of Oracle MySQL, specifically within the Optimizer component. This issue affects MySQL versions 8.0.0 through 8.0.45, 8.4.0 through 8.4.8, and 9.0.0 through 9.6.0. The vulnerability is easily exploitable, allowing a high-privileged attacker with network access to MySQL Server via multiple protocols to cause a hang or a frequently repeatable crash, leading to a complete denial-of-service condition on the server.
Exploitation of this vulnerability can cause MySQL Server to hang or crash, leading to a complete denial-of-service condition.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.