MySQL -- Multiple vulnerabilities

MySQL -- Multiple vulnerabilities

Affected packages
mysql-connector-odbc < 8.0.28
mysql-connector-c++ < 8.0.28
mysql-connector-java < 8.0.28
mysql-connector-java51 < 8.0.28
mysql-server55 < 5.5.63
mysql-server56 < 5.6.52
mysql-server57 < 5.7.37
mysql-server80 < 8.0.27


VuXML ID 7262f826-795e-11ec-8be6-d4c9ef517024
Discovery 2022-01-18
Entry 2022-01-19

Oracle reports:

This Critical Patch Update contains 78 new security patches for Oracle MySQL. 3 of these vulnerabilities may be remotely exploitable without authentication, i.e., may be exploited over a network without requiring user credentials.
The highest CVSS v3.1 Base Score of vulnerabilities affecting Oracle MySQL is 7.4


