Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-53040

Опубликовано: 21 окт. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 4.9

Описание

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

РелизСтатусПримечание
devel

not-affected

this mysql cve does not affect mariadb
esm-apps/noble

not-affected

this mysql cve does not affect mariadb
jammy

DNE

noble

not-affected

this mysql cve does not affect mariadb
plucky

not-affected

this mysql cve does not affect mariadb
questing

not-affected

this mysql cve does not affect mariadb
upstream

not-affected

this mysql cve does not affect mariadb

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

not-affected

this mysql cve does not affect mariadb
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

not-affected

this mysql cve does not affect mariadb

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

this mysql cve does not affect mariadb
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

not-affected

this mysql cve does not affect mariadb

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/focal

ignored

no more upstream support
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

not-affected

this mysql cve does not affect mariadb

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/jammy

not-affected

this mysql cve does not affect mariadb
jammy

not-affected

this mysql cve does not affect mariadb
noble

DNE

plucky

DNE

questing

DNE

upstream

not-affected

this mysql cve does not affect mariadb

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

ignored

see notes
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/bionic

ignored

see notes
esm-infra/xenial

ignored

see notes
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

needs-triage

jammy

released

8.0.44-0ubuntu0.22.04.1
noble

released

8.0.44-0ubuntu0.24.04.1
plucky

DNE

questing

DNE

upstream

released

8.0.44

Показывать по

РелизСтатусПримечание
devel

released

8.4.7-0ubuntu2
jammy

DNE

noble

DNE

plucky

released

8.4.7-0ubuntu0.25.04.1
questing

released

8.4.7-0ubuntu0.25.10.2
upstream

released

8.4.7

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

needs-triage

jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

needs-triage

jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 15%
0.00047
Низкий

4.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.9
nvd
около 2 месяцев назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

CVSS3: 4.9
msrc
около 2 месяцев назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

CVSS3: 4.9
debian
около 2 месяцев назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: ...

CVSS3: 4.9
github
около 2 месяцев назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

CVSS3: 4.9
fstec
около 2 месяцев назад

Уязвимость компонента Server: Optimizer системы управления базами данных MySQL Server, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 15%
0.00047
Низкий

4.9 Medium

CVSS3