First published: Wed Jan 20 2021(Updated: )
An unspecified vulnerability in Oracle MySQL Server related to the Server:DML component could allow an authenticated attacker to cause a denial of service resulting in a high availability impact using unknown attack vectors.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/mysql | <8.0.23 | 8.0.23 |
IBM InfoSphere Guardium z/OS | <=10.5 | |
IBM InfoSphere Guardium z/OS | <=10.6 | |
IBM InfoSphere Guardium z/OS | <=11.0 | |
IBM InfoSphere Guardium z/OS | <=11.1 | |
IBM InfoSphere Guardium z/OS | <=11.2 | |
IBM InfoSphere Guardium z/OS | <=11.3 | |
MySQL | >=8.0.0<=8.0.22 | |
NetApp OnCommand Insight | ||
NetApp OnCommand Workflow Automation | ||
netapp snapcenter |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-2088 has a high severity level due to the potential for authenticated attackers to cause a denial of service.
To fix CVE-2021-2088, ensure that your MySQL version is updated to 8.0.23 or later, or apply relevant patches from your vendor.
CVE-2021-2088 affects Oracle MySQL Server versions below 8.0.23 and certain versions of IBM Security Guardium.
CVE-2021-2088 requires authentication, but it can be exploited through unknown attack vectors that could increase availability impact.
CVE-2021-2088 is considered a local vulnerability since it requires an authenticated user to exploit it.