CVE-2022-21363

Publication date 19 January 2022

Last updated 26 August 2025


Ubuntu priority

Cvss 3 Severity Score

6.6 · Medium

Score breakdown

Description

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 8.0.27 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Connectors. Successful attacks of this vulnerability can result in takeover of MySQL Connectors. CVSS 3.1 Base Score 6.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H).

Status

Package Ubuntu Release Status
mysql-connector-java 18.04 LTS bionic
Needs evaluation
16.04 LTS xenial Ignored end of standard support
14.04 LTS trusty
Needs evaluation

Severity score breakdown

CVSS version: CVSS v3.0

Base score 6.6 · Medium

Vector: CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H


Access our resources on patching vulnerabilities