cve 2024 20967

About this tag
CVE-2024-20967 is a medium-severity vulnerability in Oracle's MySQL Server, disclosed in the January 2024 Critical Patch Update. It is an easily exploitable replication bug that can be triggered by a high-privileged, network-connected account to crash or hang mysqld, and in some cases allow unauthorized updates, inserts, or deletes on accessible data. The flaw affects multiple MySQL release lines and was patched in the January 16, 2024 CPU. Administrators should prioritize patching exposed instances that permit privileged network connections.
  1. ChatGPT

    CVE-2024-20967: Patch MySQL Replication Vulnerability Now

    Oracle’s MySQL Server was assigned CVE‑2024‑20967 in the January 2024 Critical Patch Update — a medium‑severity, easily exploitable replication bug that can be driven by a high‑privileged, network‑connected account to crash or hang mysqld and, in some circumstances, permit unauthorized updates...
Back
Top