mysql-8.0.45-1.el9_7.ML.1

エラータID: AXSA:2026-353:01

Release date: 
Wednesday, March 25, 2026 - 09:25
Subject: 
mysql-8.0.45-1.el9_7.ML.1
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
Moderate
Description: 

MySQL is a multi-user, multi-threaded SQL database server. It consists of the MySQL server daemon (mysqld) and many client programs and libraries.

Security Fix(es):

* mysql: Optimizer unspecified vulnerability (CPU Jan 2026) (CVE-2026-21941)
* mysql: Optimizer unspecified vulnerability (CPU Jan 2026) (CVE-2026-21948)
* mysql: InnoDB unspecified vulnerability (CPU Jan 2026) (CVE-2026-21936)
* mysql: Optimizer unspecified vulnerability (CPU Jan 2026) (CVE-2026-21968)
* mysql: DDL unspecified vulnerability (CPU Jan 2026) (CVE-2026-21937)
* mysql: Thread Pooling unspecified vulnerability (CPU Jan 2026) (CVE-2026-21964)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2026-21936
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.44, 8.4.0-8.4.7 and 9.0.0-9.5.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-21937
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.0-8.0.44, 8.4.0-8.4.7 and 9.0.0-9.5.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-21941
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.44, 8.4.0-8.4.7 and 9.0.0-9.5.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-21948
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.44, 8.4.0-8.4.7 and 9.0.0-9.5.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-21964
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supported versions that are affected are 8.0.0-8.0.44, 8.4.0-8.4.7 and 9.0.0-9.5.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-21968
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.44, 8.4.0-8.4.7 and 9.0.0-9.5.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. mysql-8.0.45-1.el9_7.ML.1.src.rpm
    MD5: 8e8109d296fcbd2b654a904b3fdfb29a
    SHA-256: 3f31c6b87cb9c8530e0db5a3b7775b051b1f721ee178601bce8cf767da1c939f
    Size: 466.27 MB

Asianux Server 9 for x86_64
  1. mysql-8.0.45-1.el9_7.ML.1.x86_64.rpm
    MD5: e9efbdb8219919d08e9d5b985a270685
    SHA-256: fe18998e309f69dd3909954853b3e6082892a70bf8740146fb2ef06778c6b786
    Size: 2.82 MB
  2. mysql-common-8.0.45-1.el9_7.ML.1.x86_64.rpm
    MD5: f68e66e9a6060e8f6a0bfb1fcf9c9481
    SHA-256: 89d37a8be427803ab43e2ae06ef85a28ef27a1fde6e047219d2ee661d704f29a
    Size: 75.86 kB
  3. mysql-devel-8.0.45-1.el9_7.ML.1.x86_64.rpm
    MD5: 40ea60d2b03bcfc631985b88204840fe
    SHA-256: e3a57f73e3f471f6bce79633470f38155d5bad9f675649c7001fde625518084f
    Size: 97.62 kB
  4. mysql-errmsg-8.0.45-1.el9_7.ML.1.x86_64.rpm
    MD5: 3a075ead3f0511a049d45b823285e7d0
    SHA-256: 92f62e320829b37b033afa6a3508f3b052e082dc0d346a64ac9e46d5752505c9
    Size: 508.25 kB
  5. mysql-libs-8.0.45-1.el9_7.ML.1.x86_64.rpm
    MD5: 62a0913d2f13edd27b08a8936c9b6784
    SHA-256: 1afad39766d32737feb89cb19c977d991eaa0734e9e2de6790ab9de6ed88e259
    Size: 1.23 MB
  6. mysql-server-8.0.45-1.el9_7.ML.1.x86_64.rpm
    MD5: c54eb7a119f00b9b18ef1a4c43e75a7a
    SHA-256: bad889027f9cb0b3c44f4779fd63d06bd90368407a62d13d3965147c87c1378d
    Size: 16.94 MB
  7. mysql-test-8.0.45-1.el9_7.ML.1.x86_64.rpm
    MD5: f320781d9d43b906200af329b62ed517
    SHA-256: 32c0356db7bb2fd575492240c256c783099e58b707131504e3ac7b4fb1b6da41
    Size: 393.29 MB