<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 08:22:28 +0000</lastBuildDate>
    <item>
      <title>ALSA-2025:15699 — Moderate: mysql-selinux and mysql8.4 security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2025:15699</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: mysql-selinux, AlmaLinux:10: mysql8.4-common, AlmaLinux:10: mysql8.4-errmsg, AlmaLinux:10: mysql8.4-test-data&lt;/p&gt;
&lt;p&gt;MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* openssl: Timing side-channel in ECDSA signature computation (CVE-2024-13176)
  * mysql: mysqldump unspecified vulnerability (CPU Apr 2025) (CVE-2025-30722)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-30688)
  * mysql: Stored Procedure unspecified vulnerability (CPU Apr 2025) (CVE-2025-30699)
  * mysql: UDF unspecified vulnerability (CPU Apr 2025) (CVE-2025-30721)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-30682)
  * mysql: Replication unspecified vulnerability (CPU Apr 2025) (CVE-2025-30683)
  * mysql: Components Services unspecified vulnerability (CPU Apr 2025) (CVE-2025-30715)
  * mysql: Parser unspecified vulnerability (CPU Apr 2025) (CVE-2025-21574)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-21585)
  * mysql: DML unspecified vulnerability (CPU Apr 2025) (CVE-2025-21588)
  * mysql: Replication unspecified vulnerability (CPU Apr 2025) (CVE-2025-30681)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2025) (CVE-2025-21577)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-30687)
  * mysql: DML unspecified vulnerability (CPU Apr 2025) (CVE-2025-21580)
  * mysql: PS uns…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: mysql-selinux, AlmaLinux:10: mysql8.4-common, AlmaLinux:10: mysql8.4-errmsg, AlmaLinux:10: mysql8.4-test-data&lt;/p&gt;
&lt;p&gt;MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* openssl: Timing side-channel in ECDSA signature computation (CVE-2024-13176)
  * mysql: mysqldump unspecified vulnerability (CPU Apr 2025) (CVE-2025-30722)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-30688)
  * mysql: Stored Procedure unspecified vulnerability (CPU Apr 2025) (CVE-2025-30699)
  * mysql: UDF unspecified vulnerability (CPU Apr 2025) (CVE-2025-30721)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-30682)
  * mysql: Replication unspecified vulnerability (CPU Apr 2025) (CVE-2025-30683)
  * mysql: Components Services unspecified vulnerability (CPU Apr 2025) (CVE-2025-30715)
  * mysql: Parser unspecified vulnerability (CPU Apr 2025) (CVE-2025-21574)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-21585)
  * mysql: DML unspecified vulnerability (CPU Apr 2025) (CVE-2025-21588)
  * mysql: Replication unspecified vulnerability (CPU Apr 2025) (CVE-2025-30681)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2025) (CVE-2025-21577)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-30687)
  * mysql: DML unspecified vulnerability (CPU Apr 2025) (CVE-2025-21580)
  * mysql: PS uns…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2025:15699</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0320 — De multiples vulnérabilités ont été découvertes dans Oracle MySQL. Elles permettent à un attaquant de provoquer un déni…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0320</link>
      <description>certfr-2025-avi-0320</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0320</guid>
    </item>
    <item>
      <title>cnvd-2025-17375</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2025-17375</link>
      <description>cnvd-2025-17375</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2025-17375</guid>
    </item>
    <item>
      <title>EUVD-2026-257892</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-257892</link>
      <description>EUVD-2026-257892</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-257892</guid>
    </item>
    <item>
      <title>fkie_cve-2025-30703</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-30703</link>
      <description>&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB).  Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and  9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 2.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB).  Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and  9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 2.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-30703</guid>
    </item>
    <item>
      <title>GHSA-qjgh-6vq4-q6jf</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qjgh-6vq4-q6jf</link>
      <description>&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB).  Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and  9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 2.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB).  Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and  9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 2.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qjgh-6vq4-q6jf</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-30703 — Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-30703</link>
      <description>msrc_CVE-2025-30703</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-30703</guid>
    </item>
    <item>
      <title>OESA-2025-1454 — mysql security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-1454</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS: mysql, openEuler:24.03-LTS-SP1: mysql, openEuler:20.03-LTS-SP4: mysql, openEuler:22.03-LTS-SP3: mysql, openEuler:22.03-LTS-SP4: mysql&lt;/p&gt;
&lt;p&gt;MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files. %if&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser).  Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and  9.0.0-9.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).(CVE-2025-21574)&lt;/p&gt;
&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser).  Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and  9.0.0-9.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).(CVE-2025-21575)&lt;/p&gt;
&lt;p&gt;Vulnerability in…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS: mysql, openEuler:24.03-LTS-SP1: mysql, openEuler:20.03-LTS-SP4: mysql, openEuler:22.03-LTS-SP3: mysql, openEuler:22.03-LTS-SP4: mysql&lt;/p&gt;
&lt;p&gt;MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files. %if&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser).  Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and  9.0.0-9.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).(CVE-2025-21574)&lt;/p&gt;
&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser).  Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and  9.0.0-9.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).(CVE-2025-21575)&lt;/p&gt;
&lt;p&gt;Vulnerability in…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-1454</guid>
    </item>
    <item>
      <title>RHSA-2025:15699 — Red Hat Security Advisory: mysql-selinux and mysql8.4 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:15699</link>
      <description>&lt;p&gt;mysql: Parser unspecified vulnerability (CPU Apr 2025) mysql: Parser unspecified vulnerability (CPU Apr 2025) mysql: InnoDB unspecified vulnerability (CPU Apr 2025) mysql: Options unspecified vulnerability (CPU Apr 2025) mysql: DML unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: DDL unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: DML unspecified vulnerability (CPU Apr 2025) mysql: Replication unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: Replication unspecified vulnerability (CPU Apr 2025) mysql: Replication unspecified vulnerability (CPU Apr 2025) mysql: Replication unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: mariadb: InnoDB unspecified vulnerability (CPU Apr 2025) mysql: InnoDB unspecified vulnerability (CPU Apr 2025) mysql: PS unspecified vulnerability (CPU Apr 2025) mysql: Stored Procedure unspecified vulnerability (CPU Apr 2025) mysql: InnoDB unspecified vulnerability (CPU Apr 2025) mysql: Components Services unspecified vulnerability (CPU Apr 2025) mysql: PS unspecified vulnerability (CPU Apr 2025) mysql: Components Services unspecified vulnerability (CPU Apr 2025) mysql: UDF unspecified vulnerability (CPU Apr 2025) mysql…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;mysql: Parser unspecified vulnerability (CPU Apr 2025) mysql: Parser unspecified vulnerability (CPU Apr 2025) mysql: InnoDB unspecified vulnerability (CPU Apr 2025) mysql: Options unspecified vulnerability (CPU Apr 2025) mysql: DML unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: DDL unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: DML unspecified vulnerability (CPU Apr 2025) mysql: Replication unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: Replication unspecified vulnerability (CPU Apr 2025) mysql: Replication unspecified vulnerability (CPU Apr 2025) mysql: Replication unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: Optimizer unspecified vulnerability (CPU Apr 2025) mysql: mariadb: InnoDB unspecified vulnerability (CPU Apr 2025) mysql: InnoDB unspecified vulnerability (CPU Apr 2025) mysql: PS unspecified vulnerability (CPU Apr 2025) mysql: Stored Procedure unspecified vulnerability (CPU Apr 2025) mysql: InnoDB unspecified vulnerability (CPU Apr 2025) mysql: Components Services unspecified vulnerability (CPU Apr 2025) mysql: PS unspecified vulnerability (CPU Apr 2025) mysql: Components Services unspecified vulnerability (CPU Apr 2025) mysql: UDF unspecified vulnerability (CPU Apr 2025) mysql…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:15699</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-30703</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-30703</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: mysql-5.5, Ubuntu:Pro:16.04:LTS: mysql-5.7, Ubuntu:16.04:LTS: percona-server-5.6, Ubuntu:16.04:LTS: percona-xtradb-cluster-5.6, Ubuntu:Pro:18.04:LTS: mysql-5.7, Ubuntu:20.04:LTS: mysql-8.0, Ubuntu:20.04:LTS: mariadb-10.3, Ubuntu:22.04:LTS: mysql-8.0, Ubuntu:24.04:LTS: mysql-8.0, Ubuntu:25.10: mysql-8.4&lt;/p&gt;
&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB).  Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and  9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 2.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: mysql-5.5, Ubuntu:Pro:16.04:LTS: mysql-5.7, Ubuntu:16.04:LTS: percona-server-5.6, Ubuntu:16.04:LTS: percona-xtradb-cluster-5.6, Ubuntu:Pro:18.04:LTS: mysql-5.7, Ubuntu:20.04:LTS: mysql-8.0, Ubuntu:20.04:LTS: mariadb-10.3, Ubuntu:22.04:LTS: mysql-8.0, Ubuntu:24.04:LTS: mysql-8.0, Ubuntu:25.10: mysql-8.4&lt;/p&gt;
&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB).  Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and  9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 2.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-30703</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0813 — Oracle MySQL: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0813</link>
      <description>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle MySQL ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle MySQL ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0813</guid>
    </item>
  </channel>
</rss>
