PT-2025-29650 · Oracle+7 · Oracle Mysql Server+7

CVE-2025-50097

·

Publicado

2025-07-15

·

Atualizado

2025-10-06

CVSS v2.0

6.8

Média

VetorAV:N/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Oracle MySQL Server versions 8.0.0 through 8.0.42 Oracle MySQL Server versions 8.4.0 through 8.4.5 Oracle MySQL Server versions 9.0.0 through 9.3.0
Description A vulnerability exists in the Oracle MySQL Server component Server: Security: Encryption. This vulnerability allows a high-privileged attacker with network access via multiple protocols to compromise the MySQL Server, potentially leading to a denial-of-service (DOS) condition through a hang or frequent crashes.
Recommendations Oracle MySQL Server versions prior to 8.0.43 should be updated. Oracle MySQL Server versions prior to 8.4.6 should be updated. Oracle MySQL Server versions prior to 9.3.1 should be updated.

Exploit

Correção

DoS

Resource Exhaustion

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2025:15699
ALSA-2025:16046
ALSA-2025:16086
ALSA-2025:16861
AZL-65309
AZL-65480
BDU:2025-08678
CESA-2025_16861
CVE-2025-50097
INFSA-2025_16046
INFSA-2025_16086
INFSA-2025_16861
OESA-2025-2085
RHSA-2025:16861
RHSA-2025_16046
RHSA-2025_16086
RHSA-2025_16861
USN-7691-1
USN-7691-2

Produtos afetados

Almalinux
Centos
Linuxmint
Mysql Server
Oracle Mysql Server
Red Hat
Rocky Linux
Ubuntu