Logo
vulnerabilityCVE-2025-30693
Name
CVE-2025-30693
Source
NVD ( link)Debian ( link)
Description
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
mariadb
Patched

Vulnerability Ratings#


5.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
10.11.17
Not Affected
buildroot
master
10.11.17
Not Affected
openwrt
master
3.4.8-r3
Not Affected
openwrt
master
11.8.3-r1
Not Affected
openwrt
openwrt-25.12
3.4.8-r3
Not Affected
openwrt
openwrt-25.12
11.8.3-r1
Not Affected
yocto
master
11.4.12
Not Affected
yocto
scarthgap
10.11.16
Not Affected

Resolved with patches#


mariadb (yocto:kirkstone)

#
Title
Author
Resolve
1
MDEV-36613 Incorrect undo logging for indexes on virtual
=?UTF-8?q?Marko=20M=C3=A4kel=C3=A4?= <marko.makela@mariadb.com>
CVE-2025-30693