Denial-of-Service Vulnerability in MySQL Server by Oracle
CVE-2025-50082

6.5MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
15 July 2025

What is CVE-2025-50082?

A denial-of-service vulnerability exists in the MySQL Server component of Oracle MySQL, allowing low-privileged attackers with network access to exploit the system through various protocols. A successful attack can lead to repeated crashes or hangs of the MySQL Server, severely impacting availability. Affected versions include 8.0.0 through 8.0.42, 8.4.0 through 8.4.5, and 9.0.0 through 9.3.0. Users are urged to review Oracle's security alerts for mitigation strategies.

Affected Version(s)

MySQL Server 8.0.0 <= 8.0.42

MySQL Server 8.4.0 <= 8.4.5

MySQL Server 9.0.0 <= 9.3.0

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-50082 : Denial-of-Service Vulnerability in MySQL Server by Oracle