Msrc Azl3 Mysql 8.0.41-1 On Azure Linux 3.0 vulnerabilities

35 known vulnerabilities affecting msrc/azl3_mysql_8.0.41-1_on_azure_linux_3.0.

Total CVEs
35
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH3MEDIUM27LOW4

Vulnerabilities

Page 1 of 2
CVE-2025-4565MEDIUMCVSS 5.32025-06-10
CVE-2025-4565 [HIGH] CWE-674 Unbounded recursion in Python Protobuf Unbounded recursion in Python Protobuf FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is
msrc
CVE-2025-5025MEDIUMCVSS 4.82025-05-13
CVE-2025-5025 [MEDIUM] CWE-295 No QUIC certificate pinning with wolfSSL No QUIC certificate pinning with wolfSSL FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Micros
msrc
CVE-2025-4947MEDIUMCVSS 6.52025-05-13
CVE-2025-4947 [MEDIUM] CWE-295 QUIC certificate check skip with wolfSSL QUIC certificate check skip with wolfSSL FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Micros
msrc
CVE-2025-30696MEDIUMCVSS 4.92025-04-08
CVE-2025-30696 [MEDIUM] CWE-284 Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.7.32 and prior and 8.0.22 and prior. Difficult to exploit vulnerability allows Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.7.32 and prior and 8.0.22 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols
msrc
CVE-2025-30687MEDIUMCVSS 6.52025-04-08
CVE-2025-30687 [MEDIUM] CWE-732 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulne Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via multi
msrc
CVE-2025-30705MEDIUMCVSS 4.92025-04-08
CVE-2025-30705 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL Vulnerability in the MySQL Server product of Oracle MySQL FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with w
msrc
CVE-2025-21579MEDIUMCVSS 4.92025-04-08
CVE-2025-21579 [MEDIUM] CWE-732 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnera Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multip
msrc
CVE-2025-30684MEDIUMCVSS 4.92025-04-08
CVE-2025-30684 [MEDIUM] CWE-732 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vul Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via mu
msrc
CVE-2025-30693MEDIUMCVSS 5.52025-04-08
CVE-2025-30693 [MEDIUM] CWE-284 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability al Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protoc
msrc
CVE-2025-30695MEDIUMCVSS 5.52025-04-08
CVE-2025-30695 [MEDIUM] CWE-284 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability al Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protoc
msrc
CVE-2025-30683MEDIUMCVSS 4.92025-04-08
CVE-2025-30683 [MEDIUM] CWE-732 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vul Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via mu
msrc
CVE-2025-21580MEDIUMCVSS 4.92025-04-08
CVE-2025-21580 [MEDIUM] CWE-732 Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.7.32 and prior and 8.0.22 and prior. Difficult to exploit vulnerability allows Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.7.32 and prior and 8.0.22 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols
msrc
CVE-2025-21581MEDIUMCVSS 4.92025-04-08
CVE-2025-21581 [MEDIUM] CWE-732 Vulnerability in the MySQL Server product of Oracle MySQL Vulnerability in the MySQL Server product of Oracle MySQL FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with w
msrc
CVE-2025-21584MEDIUMCVSS 4.92025-04-08
CVE-2025-21584 [MEDIUM] Vulnerability in the MySQL Server product of Oracle MySQL Vulnerability in the MySQL Server product of Oracle MySQL FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2025-30721MEDIUMCVSS 4.02025-04-08
CVE-2025-30721 [MEDIUM] Vulnerability in the MySQL Server product of Oracle MySQL Vulnerability in the MySQL Server product of Oracle MySQL FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2025-30688MEDIUMCVSS 6.52025-04-08
CVE-2025-30688 [MEDIUM] CWE-732 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulne Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via multi
msrc
CVE-2025-30715MEDIUMCVSS 4.92025-04-08
CVE-2025-30715 [MEDIUM] Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.7.32 and prior and 8.0.22 and prior. Difficult to exploit vulnerability allows Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.7.32 and prior and 8.0.22 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to comp
msrc
CVE-2025-21585MEDIUMCVSS 4.92025-04-08
CVE-2025-21585 [MEDIUM] Vulnerability in the MySQL Server product of Oracle MySQL Vulnerability in the MySQL Server product of Oracle MySQL FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2025-30699MEDIUMCVSS 4.92025-04-08
CVE-2025-30699 [MEDIUM] Vulnerability in the MySQL Server product of Oracle MySQL Vulnerability in the MySQL Server product of Oracle MySQL FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2025-21574MEDIUMCVSS 6.52025-04-08
CVE-2025-21574 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerab Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple
msrc