Msrc Cbl2 Mysql 8.0.43-1 On Cbl Mariner 2.0 vulnerabilities
35 known vulnerabilities affecting msrc/cbl2_mysql_8.0.43-1_on_cbl_mariner_2.0.
Total CVEs
35
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM31LOW4
Vulnerabilities
Page 1 of 2
CVE-2025-62813MEDIUMCVSS 5.92025-10-14
CVE-2025-62813 [MEDIUM] CWE-158 LZ4 through 1.10.0 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact when the application processes untrusted LZ4 frames. For example, LZ4F_cr
LZ4 through 1.10.0 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact when the application processes untrusted LZ4 frames. For example, LZ4F_createCDict_advanced in lib/lz4frame.c mishandles NULL checks.
FAQ:
msrc
CVE-2025-53053MEDIUMCVSS 5.52025-10-14
CVE-2025-53053 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerabili
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple p
msrc
CVE-2025-53069MEDIUMCVSS 4.92025-10-14
CVE-2025-53069 [MEDIUM] CWE-770 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploit
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network acces
msrc
CVE-2025-53045MEDIUMCVSS 4.92025-10-14
CVE-2025-53045 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability al
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protoc
msrc
CVE-2025-53040MEDIUMCVSS 4.92025-10-14
CVE-2025-53040 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulne
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via mult
msrc
CVE-2025-53054MEDIUMCVSS 5.52025-10-14
CVE-2025-53054 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability al
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protoc
msrc
CVE-2025-53044MEDIUMCVSS 4.92025-10-14
CVE-2025-53044 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability al
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protoc
msrc
CVE-2025-53062MEDIUMCVSS 4.92025-10-14
CVE-2025-53062 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability al
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protoc
msrc
CVE-2025-53042MEDIUMCVSS 4.92025-10-14
CVE-2025-53042 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulne
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via mult
msrc
CVE-2025-10148MEDIUMCVSS 6.52025-09-09
CVE-2025-10148 [MEDIUM] predictable WebSocket mask
predictable WebSocket mask
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in
msrc
CVE-2025-9086MEDIUMCVSS 4.32025-09-09
CVE-2025-9086 [HIGH] Out of bounds read for cookie path
Out of bounds read for cookie path
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to tr
msrc
CVE-2025-50080MEDIUMCVSS 4.92025-07-08
CVE-2025-50080 [MEDIUM] Vulnerability in the MySQL Server product of Oracle MySQL
Vulnerability in the MySQL Server product of Oracle MySQL
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2025-50097MEDIUMCVSS 4.92025-07-08
CVE-2025-50097 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploi
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows high privileged attacker with network acce
msrc
CVE-2025-50099MEDIUMCVSS 4.92025-07-08
CVE-2025-50099 [MEDIUM] Vulnerability in the MySQL Server product of Oracle MySQL
Vulnerability in the MySQL Server product of Oracle MySQL
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2025-50084MEDIUMCVSS 4.92025-07-08
CVE-2025-50084 [MEDIUM] CWE-863 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulne
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows high privileged attacker with network access via mult
msrc
CVE-2025-50086MEDIUMCVSS 4.92025-07-08
CVE-2025-50086 [MEDIUM] CWE-863 Vulnerability in the MySQL Server product of Oracle MySQL
Vulnerability in the MySQL Server product of Oracle MySQL
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with w
msrc
CVE-2025-50096MEDIUMCVSS 4.42025-07-08
CVE-2025-50096 [MEDIUM] Vulnerability in the MySQL Server product of Oracle MySQL
Vulnerability in the MySQL Server product of Oracle MySQL
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2025-50093MEDIUMCVSS 4.92025-07-08
CVE-2025-50093 [MEDIUM] Vulnerability in the MySQL Server product of Oracle MySQL
Vulnerability in the MySQL Server product of Oracle MySQL
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2025-50091MEDIUMCVSS 4.92025-07-08
CVE-2025-50091 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulne
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows high privileged attacker with network access via mult
msrc
CVE-2025-53023MEDIUMCVSS 4.92025-07-08
CVE-2025-53023 [MEDIUM] CWE-400 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication).
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication).
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most
msrc
1 / 2Next →