First published: Tue Oct 15 2024(Updated: )
Last updated 12 November 2024
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/mysql-8.0 | 8.0.40-1 | |
MySQL | >=8.0.0<=8.0.39 | |
MySQL | >=8.4.0<=8.4.2 | |
MySQL | =9.0.0 | |
MySQL | =9.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-21201 is rated as easily exploitable and poses a high risk to systems running affected versions of MySQL Server.
The recommended fix for CVE-2024-21201 is to upgrade to MySQL Server version 8.0.40-1 or later, or 9.0.2 or later.
CVE-2024-21201 affects MySQL Server versions 8.0.39 and prior, 8.4.2 and prior, and 9.0.1 and prior.
CVE-2024-21201 specifically involves the MySQL Server component, particularly the Optimizer.
CVE-2024-21201 can be exploited by high privileged attackers with network access to the vulnerable MySQL Server.