Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-53054

Опубликовано: 21 окт. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.5

Описание

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).

РелизСтатусПримечание
devel

not-affected

this mysql cve does not affect mariadb
esm-apps/noble

not-affected

this mysql cve does not affect mariadb
jammy

DNE

noble

not-affected

this mysql cve does not affect mariadb
plucky

not-affected

this mysql cve does not affect mariadb
questing

not-affected

this mysql cve does not affect mariadb
upstream

not-affected

this mysql cve does not affect mariadb

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

not-affected

this mysql cve does not affect mariadb
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

not-affected

this mysql cve does not affect mariadb

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

this mysql cve does not affect mariadb
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

not-affected

this mysql cve does not affect mariadb

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/focal

ignored

no more upstream support
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

not-affected

this mysql cve does not affect mariadb

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/jammy

not-affected

this mysql cve does not affect mariadb
jammy

not-affected

this mysql cve does not affect mariadb
noble

DNE

plucky

DNE

questing

DNE

upstream

not-affected

this mysql cve does not affect mariadb

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

ignored

see notes
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/bionic

ignored

see notes
esm-infra/xenial

ignored

see notes
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

needs-triage

jammy

released

8.0.44-0ubuntu0.22.04.1
noble

released

8.0.44-0ubuntu0.24.04.1
plucky

DNE

questing

DNE

upstream

released

8.0.44

Показывать по

РелизСтатусПримечание
devel

released

8.4.7-0ubuntu2
jammy

DNE

noble

DNE

plucky

released

8.4.7-0ubuntu0.25.04.1
questing

released

8.4.7-0ubuntu0.25.10.2
upstream

released

8.4.7

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

needs-triage

jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

needs-triage

jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 15%
0.00047
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
nvd
около 2 месяцев назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).

CVSS3: 5.5
msrc
около 2 месяцев назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).

CVSS3: 5.5
debian
около 2 месяцев назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: ...

CVSS3: 5.5
github
около 2 месяцев назад

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).

CVSS3: 5.5
fstec
около 2 месяцев назад

Уязвимость компонента InnoDB системы управления базами данных MySQL Server, позволяющая нарушителю получить доступ к данным или вызвать отказ в обслуживании

EPSS

Процентиль: 15%
0.00047
Низкий

5.5 Medium

CVSS3