Skip to main content

CVE-2024-21015

Severity Medium
Score 5.5/10

Summary

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). An easily exploitable vulnerability allows a high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in the unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert, or delete access to some of MySQL Server accessible data. This issue affects mysql-server versions through 8.0.34, and 8.1.0 through 8.3.0.

  • LOW
  • NETWORK
  • LOW
  • UNCHANGED
  • NONE
  • HIGH
  • NONE
  • HIGH

Advisory Timeline

  • Published