CVE-2023-22084

CVSS 3.1 Score 4.9 of 10 (medium)

Details

Published Oct 17, 2023
Updated: Jan 27, 2024

Summary

CVE-2023-22084 is a newly disclosed vulnerability affecting the InnoDB component of Oracle MySQL Server, with versions 5.7.43 and prior, 8.0.34 and prior, and 8.1.0 being vulnerable. This issue is described as easily exploitable, allowing high-privileged attackers with network access to compromise the server via multiple protocols. Successful exploitation can lead to a denial of service (DoS) condition, causing a hang or frequent crashes of MySQL Server. The base score of CVSS 3.1 for this vulnerability is 4.9, focusing on availability impacts.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • MySQL
  • Fedora Operating System

Affected Vendors

  • BonqDAO
  • Fedora Project