CVE-2024-21239

high
Published 2025-02-19 · Modified 2025-02-19
CVSS v3
CVSS v4 NEW
not yet in upstream
VIR risk
8.0

Description

RHSA-2025:1673: mysql:8.0 security update (Important)

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Red Hat Errata — Red Hat Inc. · View original ↗ · Open-Errata-API

Description mysql: InnoDB unspecified vulnerability (CPU Oct 2024) CVSS v3: 4.9 (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H) Errata / fixed releases ProductPackageAdvisoryReleased Red Hat Enterprise Linux 8mysql:8.0-8100020250212154709.489197e6RHSA-2025:16732025-02-19T00:00:00Z Red Hat Enterprise Linux 9mysql-0:8.0.41-2.el9_5RHSA-2025:16712025-02-19T00:00:00Z Package state ProductPackageState…

Description

mysql: InnoDB unspecified vulnerability (CPU Oct 2024)

CVSS v3: 4.9 (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H)

Errata / fixed releases

ProductPackageAdvisoryReleased
Red Hat Enterprise Linux 8mysql:8.0-8100020250212154709.489197e6RHSA-2025:16732025-02-19T00:00:00Z
Red Hat Enterprise Linux 9mysql-0:8.0.41-2.el9_5RHSA-2025:16712025-02-19T00:00:00Z

Package state

ProductPackageState
Red Hat Enterprise Linux 10mysql8.4Affected

Apply commands

bash fix
Apply RHSA-2025:1673 for Red Hat Enterprise Linux 8
yum update -y mysql:8
# or:
dnf upgrade -y mysql:8

Affected

VendorProductVersion
redhatRed Hat Enterprise Linux 10Affected

OS impact

almalinux AlmaLinux Fixed 2 releases
VersionStatusFixed in
9 Fixed mysql-server-8.0.41-2.el9_5.x86_64.rpm
8 Fixed mecab-ipadic-2.7.0.20070801-17.module_el8.10.0+3965+b415b607.x86_64.rpm
debian Debian Fixed 1 release
VersionStatusFixed in
sid Fixed 8.0.40-1
redhat Red Hat Fixed 2 releases
VersionStatusFixed in
9 Fixed
8 Fixed
rockylinux Rocky Linux Fixed 2 releases
VersionStatusFixed in
9 Fixed
8 Fixed

References

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.