CVE-2024-20963Patch(netapp / mysql)

LOWCVSS 6.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch netapp mysql systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).

1.0/ 10 priority

Sources & remediation

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • mysql
  • oncommand_insight

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Products
mysqloncommand_insight

1 version affected across 2 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-18: 1Patch / Workaround · 2026-02-18: 1Technical Details · 2026-02-18: 102-18
Signal classification1 categories
Patch
1100.0%
Referenced assets1 URL
Full discourse1 post
  • ThreatCluster@threatcluster
    Patch

    Oracle MySQL Server 8.0.35 and prior and 8.2.0 and prior are hit by multiple CVEs (incl. CVE-2024-20963, 20969, 20985) letting network attackers trigger DoS and in some cases modify data. Patch now. https://threatcluster.io/cluster/multiple-vulnerabilities-in-oracle-mysql-server-identified-deb4f1f2

    Post summary

    Oracle MySQL Server 8.0.35 and earlier, and 8.2.0 and earlier, are affected by CVE-2024-20963, 20969, and 20985, enabling DoS and possible data modification; patches are now available.

    0000047
    71 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appnetapponcommand_insight---
Apporaclemysql---

Explore more