CVE-2025-30722

Updated: 2025-11-10 02:40:23.566714

Description:

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Client accessible data as well as unauthorized update, insert or delete access to some of MySQL Client accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N).


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x MEDIUM 6.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU mariadb 10.5.22 6.8 MEDIUM In Testing 2026-01-18 05:12:48
AlmaLinux 9.2 ESU galera 26.4.14 6.8 MEDIUM In Testing 2026-01-14 17:51:24
AlmaLinux 9.2 ESU mysql 8.0.32 6.8 MEDIUM Released CLSA-2025:1751461369 2025-07-03 02:18:01
CentOS 6 ELS mysql 5.1.73 6.8 MEDIUM Not Vulnerable 2025-06-12 00:53:12
CentOS 8.4 ELS mysql 8.0.26 6.8 MEDIUM Released CLSA-2025:1749481543 2025-06-10 00:24:44
CentOS 8.5 ELS mysql 8.0.26 6.8 MEDIUM Released CLSA-2025:1749481598 2025-06-10 00:24:43
CentOS Stream 8 ELS mysql 8.0.26 6.8 MEDIUM Released CLSA-2025:1749481186 2025-06-10 00:24:45
CloudLinux 6 ELS mysql 5.1.73 6.8 MEDIUM Not Vulnerable 2025-06-12 00:53:11
Oracle Linux 6 ELS mysql 5.1.73 6.8 MEDIUM Not Vulnerable 2025-06-12 00:53:12
TuxCare 9.6 ESU galera 26.4.22 6.8 MEDIUM Not Vulnerable 2026-01-09 02:03:38
Total: 13