QID 20221
Date Published: 2021-04-21
QID 20221: Oracle MySQL April 2021 Critical Patch Update (CPUAPR2021)
This Critical Patch Update contains 49 new security patches for Oracle MySQL.
Affected Versions:
MySQL Server, versions 5.7.33 and prior, 8.0.23 and prior.
QID Detection Logic (Unauthenticated):
This QID detects vulnerable versions of MySQL via the banner exposed by the service.
(Authenticated):
This QID detects vulnerable versions of MySQL via mysql -V command
Successful exploitation could allow an attacker to affect the confidentiality, integrity, and availability of data on the target system.
Solution
Refer to vendor advisory Oracle MySQL April 2021 .
Vendor References
- MySQL CPUAPR2021 -
www.oracle.com/security-alerts/cpuapr2021.html#AppendixMSQL
CVEs related to QID 20221
CVE-2020-1971 | CVE-2021-3449 | CVE-2020-28196 | CVE-2021-23841 | CVE-2021-2144 | CVE-2021-2172 | CVE-2021-2298 | CVE-2021-2178 | CVE-2021-2202 | CVE-2021-2307 | CVE-2021-2304 | CVE-2021-2180 | CVE-2021-2194 | CVE-2021-2154 | CVE-2021-2166 | CVE-2021-2196 | CVE-2021-2300 | CVE-2021-2305 | CVE-2021-2179 | CVE-2021-2226 | CVE-2021-2160 | CVE-2021-2164 | CVE-2021-2169 | CVE-2021-2170 | CVE-2021-2193 | CVE-2021-2203 | CVE-2021-2212 | CVE-2021-2213 | CVE-2021-2278 | CVE-2021-2299 | CVE-2021-2230 | CVE-2021-2146 | CVE-2021-2201 | CVE-2021-2208 | CVE-2021-2215 | CVE-2021-2217 | CVE-2021-2293 | CVE-2021-2174 | CVE-2021-2171 | CVE-2021-2162 | CVE-2021-2301 | CVE-2021-2308 | CVE-2021-2232 |
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Oracle MySQL April 2021 Critical Patch Update (CPUAPR2021) |
|