CVE-2025-21501

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jan 21, 2025

Summary

CVE-2025-21501 is a vulnerability affecting Oracle MySQL Server versions 8.0.40 and prior, 8.4.3 and prior, and 9.1.0 and prior. This issue lies within the Optimizer component and can be exploited by a low-privileged attacker with network access. Successful attacks may lead to a hang or frequent crashes of MySQL Server, resulting in a denial-of-service (DoS) condition. The CVSS Base Score is 6.5, with a high impact on availability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share