CVE-2021-2429 is a vulnerability affecting Oracle MySQL Server versions 8.0.25 and prior, specifically within the InnoDB component. This unauthenticated network vulnerability, while difficult to exploit, can lead to a complete denial of service (DoS) by causing the MySQL Server to hang or repeatedly crash. With a CVSS 3.1 Base Score of 5.9 (Medium), its primary impact is on availability. There is no evidence of active exploitation, nor are there known public exploit modules available in Metasploit, Nuclei, or ExploitDB. Community discussion is minimal, with only one mention on Reddit regarding a heap-based buffer overflow in the MySQL InnoDB memcached plugin, which aligns with the vulnerability's characteristics. No media coverage has been observed for this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 8.0.0, <= 8.0.25CPE matchmatch criteria | cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.