Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-30722

Опубликовано: 15 апр. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.3

Описание

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Client accessible data as well as unauthorized update, insert or delete access to some of MySQL Client accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N).

РелизСтатусПримечание
devel

not-affected

1:11.8.6-5
esm-apps/noble

released

1:10.11.13-0ubuntu0.24.04.1
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

released

1:10.11.13-0ubuntu0.24.04.1
oracular

ignored

end of life, was needs-triage
plucky

released

1:11.4.7-0ubuntu0.25.04.1
questing

not-affected

1:11.8.3-1build1
resolute

not-affected

1:11.8.6-5

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps-legacy/xenial

needs-triage

esm-apps/xenial

ignored

end of ESM support, was needs-triage
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

plucky

DNE

questing

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

needs-triage

esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

plucky

DNE

questing

DNE

resolute

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/focal

ignored

no more upstream support
focal

ignored

end of standard support, was ignored [no more upstream support]
jammy

DNE

noble

DNE

oracular

DNE

plucky

DNE

questing

DNE

resolute

DNE

upstream

ignored

no more upstream support

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/jammy

released

1:10.6.22-0ubuntu0.22.04.1
esm-infra/focal

DNE

focal

DNE

jammy

released

1:10.6.22-0ubuntu0.22.04.1
noble

DNE

oracular

DNE

plucky

DNE

questing

DNE

resolute

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

ignored

see notes
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

plucky

DNE

questing

DNE

resolute

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/xenial

ignored

see notes
esm-infra/bionic

ignored

see notes
esm-infra/focal

DNE

esm-infra/xenial

ignored

end of ESM support, was ignored [see notes]
focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

plucky

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

released

8.0.42-0ubuntu0.20.04.1
focal

released

8.0.42-0ubuntu0.20.04.1
jammy

released

8.0.42-0ubuntu0.22.04.1
noble

released

8.0.42-0ubuntu0.24.04.1
oracular

released

8.0.42-0ubuntu0.24.10.1
plucky

DNE

questing

DNE

resolute

DNE

upstream

released

8.0.42

Показывать по

РелизСтатусПримечание
devel

released

8.4.5-0ubuntu1
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

plucky

released

8.4.5-0ubuntu0.1
questing

released

8.4.5-0ubuntu1
resolute

released

8.4.5-0ubuntu1
upstream

released

8.4.5

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps-legacy/xenial

needs-triage

esm-apps/xenial

ignored

end of ESM support, was needs-triage
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

plucky

DNE

questing

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps-legacy/xenial

needs-triage

esm-apps/xenial

ignored

end of ESM support, was needs-triage
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

plucky

DNE

questing

DNE

Показывать по

EPSS

Процентиль: 37%
0.00463
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
redhat
больше 1 года назад

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Client accessible data as well as unauthorized update, insert or delete access to some of MySQL Client accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N).

CVSS3: 5.3
nvd
больше 1 года назад

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Client accessible data as well as unauthorized update, insert or delete access to some of MySQL Client accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N).

CVSS3: 5.3
debian
больше 1 года назад

Vulnerability in the MySQL Client product of Oracle MySQL (component: ...

CVSS3: 5.3
github
больше 1 года назад

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Client accessible data as well as unauthorized update, insert or delete access to some of MySQL Client accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N).

CVSS3: 5.3
fstec
больше 1 года назад

Уязвимость системы управления базами данных MySQL и MariaDB, связанная с раскрытием информации, позволяющая нарушителю получить доступ к конфиденциальным данным

EPSS

Процентиль: 37%
0.00463
Низкий

5.3 Medium

CVSS3

Уязвимость CVE-2025-30722