Skip to main content

Uncaught Exception

CVE-2020-14852

Severity Medium
Score 4.9/10

Summary

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Charsets). An easily exploitable vulnerability allows a highly privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DoS) of MySQL Server. This vulnerability affects mysql-server package versions through 8.0.21.

  • LOW
  • NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • HIGH
  • NONE
  • HIGH

CWE-248 - Uncaught Exception

An exception is thrown from a function, but it is not caught.

Advisory Timeline

  • Published