Impact
The vulnerability resides in the core client component of Oracle MySQL Shell. It allows a low‑privileged user who can log onto the system where the shell runs to cause the application to hang or crash repeatedly. A successful exploitation results only in an availability impact, with no modification of data or confidentiality compromise.
Affected Systems
Affected versions are Oracle MySQL Shell 8.0.0 through 8.0.45, 8.4.0 through 8.4.8, and 9.0.0 through 9.6.0. The flaw exists in the Shell: Core Client component of Oracle MySQL Shell distributed by Oracle.
Risk and Exploitability
The CVSS base score is 5.0, indicating moderate impact on availability. Exploitation requires local access and a low privilege level, and a person other than the attacker must provide user interaction. The EPSS score is not available, and the vulnerability is not listed in the CISA KEV catalog. Because the flaw causes a denial of service, an attacker who can obtain local access can disrupt database operations, though no data loss or unauthorized access occurs.
OpenCVE Enrichment