CVE-2025-8107 Information

Description

In OceanBase’s Oracle tenant mode a malicious user with specific privileges can achieve privilege escalation to SYS-level access by executing carefully crafted commands.

This vulnerability only affects OceanBase tenants in Oracle mode. Tenants in MySQL mode are unaffected.

Reference

https://github.com/oceanbase/oceanbase/security

CNNVD-202507-3067 (Published: 2025-07-24)

Share on: