First published: Tue Apr 16 2024(Updated: )
Last updated 24 July 2024
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/mariadb | <=1:10.11.6-0+deb12u1 | 1:11.4.3-1 |
debian/mariadb-10.5 | <=1:10.5.23-0+deb11u1 | 1:10.5.26-0+deb11u2 |
debian/mysql-8.0 | 8.0.40-1 | |
redhat/mysql | <8.0.37 | 8.0.37 |
redhat/mysql | <8.3.1 | 8.3.1 |
MySQL | >=8.0.0<=8.0.36 | |
MySQL | >=8.1.0<=8.3.0 | |
NetApp Active IQ Unified Manager for VMware vSphere | ||
netapp active iq unified manager windows | ||
NetApp OnCommand Insight | ||
NetApp OnCommand Workflow Automation | ||
NetApp SnapCenter | ||
Fedora | =39 | |
Fedora | =40 | |
Debian | =11.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-21096 is classified as a difficult to exploit vulnerability that may permit unauthenticated attackers to gain access.
CVE-2024-21096 affects Oracle MySQL versions 8.0.36 and earlier, and 8.3.0 and earlier.
To fix CVE-2024-21096, update MySQL to version 8.0.40-1 or later for Debian, and 8.0.37 or later for RedHat.
CVE-2024-21096 requires an authenticated logon to exploit, which mitigates the risk of remote exploitation.
CVE-2024-21096 is found in the MySQL Server product, particularly in the mysqldump client component.