CNNVD-202510-2677 Information

CNNVD ID

CNNVD-202510-2677

CVE-2025-53054

  • CNNVD Published: 2025-10-21

Description (Chinese)

Oracle MySQL是美国甲骨文(Oracle)公司的一套开源的关系数据库管理系统。 Oracle MySQL的MySQL Server 8.0.0版本至8.0.43版本、8.4.0版本至8.4.6版本和9.0.0版本至9.4.0版本存在安全漏洞,该漏洞源于高权限攻击者可通过多种协议进行网络访问,可能导致拒绝服务攻击和数据未授权修改。

Description (English)

Oracle MySQL is an open source relationship database management system for Oracle. There is a security gap between MySQL Server 8.0.0 to 8.0.43, 8.4.0 to 8.4.6 and 9.0.0 to 9.4.0 of Oracle MySQL, which stems from the use of multiple protocols for web access by high-authority attackers, which may result in denial of service attacks and unauthorized data modifications.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

甲骨文

Published

2025-10-21

Last Modified

2026-02-24

References

https://www.oracle.com/security-alerts/cpuoct2025.html

Patch

https://www.oracle.com/security-alerts/cpuoct2025.html

Share on: