Skip to main content

CVE-2024-21102

Severity Medium
Score 4.9/10

Summary

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). An easily exploitable vulnerability allows highly privileged attackers with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in the unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. This issue affects the package mysql-server versions through 7.5.33, 7.6.0 through 7.6.29, 8.0.0 through 8.0.36, and 8.1.0 through 8.3.0.

  • LOW
  • NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • HIGH
  • NONE
  • HIGH

Advisory Timeline

  • Published