Logo
vulnerabilityCVE-2025-30722
Name
CVE-2025-30722
Source
NVD ( link)Debian ( link)
Description
Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Client accessible data as well as unauthorized update, insert or delete access to some of MySQL Client accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N).
CWEs
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
mariadb
Patched

Vulnerability Ratings#


5.3
CVSSv31
6.8
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
10.11.17
Not Affected
buildroot
master
10.11.17
Not Affected
openwrt
master
3.4.8-r3
Not Affected
openwrt
master
11.8.3-r1
Not Affected
openwrt
openwrt-25.12
3.4.8-r3
Not Affected
openwrt
openwrt-25.12
11.8.3-r1
Not Affected
yocto
master
11.4.12
Not Affected
yocto
scarthgap
10.11.16
Not Affected

Resolved with patches#


mariadb (yocto:kirkstone)

#
Title
Author
Resolve
1
MDEV-36268 mariadb-dump used wrong quoting character
Sergei Golubchik <serg@mariadb.org>
CVE-2025-30722