Skip to main content

CVE-2024-20994

Severity Medium
Score 5.3/10

Summary

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). This vulnerability affects mysql-server package versions through 8.0.36, and 8.1.0 through 8.3.0. Difficult to exploit vulnerability allows a low-privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DoS) of MySQL Server.

  • HIGH
  • NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • LOW
  • NONE
  • HIGH

Advisory Timeline

  • Published