CVE-2024-20977
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Jan 16, 2024
Updated: Feb 2, 2024
Summary
CVE-2024-20977 is a vulnerability affecting the Optimizer component of Oracle MySQL Server versions 8.0.35 and prior, as well as 8.2.0 and prior. This issue enables low-privileged network attackers to cause a hang or frequent crashes of MySQL Server, leading to a denial-of-service (DoS) condition. The Base Score of this vulnerability under the Common Vulnerability Scoring System (CVSS) version 3.1 is 6.5, with an impact on availability. Attackers can exploit this easily, making it essential for users to apply the necessary patches to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- MySQL
Affected Vendors
- BonqDAO