CVE-2025-21503

CVSS 3.1 Score 4.9 of 10 (medium)

Details

Published Jan 21, 2025

Summary

CVE-2025-21503 is a vulnerability affecting Oracle MySQL's InnoDB component in versions 8.0.40 and prior, 8.4.3 and prior, and 9.1.0 and prior. This issue is classified as easily exploitable and allows a high-privileged attacker with network access to cause a hang or frequent crashes of MySQL Server, leading to a Denial of Service (DoS) attack. The Base Score of CVSS 3.1 for this vulnerability is 4.9, with an impact on availability. Attackers can exploit this issue via multiple protocols, making it crucial for affected organizations to apply the necessary patches promptly.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share