CVE-2025-21505
CVSS 3.1 Score 4.9 of 10 (medium)
Details
Published Jan 21, 2025
Updated: Jan 22, 2025
CWE ID 770
Summary
CVE-2025-21505 is a serious vulnerability affecting Oracle MySQL Server versions 8.0.40 and prior, 8.4.3 and prior, and 9.1.0 and prior. This issue can be exploited by high privileged attackers with network access to cause a hang or frequent crashes of MySQL Server, resulting in a Denial of Service (DoS). Affected versions are vulnerable via multiple protocols, and the impact is rated as High (Availability) with a base CVSS score of 4.9. To mitigate this risk, it is recommended to apply the relevant patches or updates as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- MySQL