Bug 2505182 (CVE-2026-61096) - CVE-2026-61096 mysql: Pluggable Auth unspecified vulnerability (CPU Jul 2026)
Summary: CVE-2026-61096 mysql: Pluggable Auth unspecified vulnerability (CPU Jul 2026)
Keywords:
Status: NEW
Alias: CVE-2026-61096
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2507338 2507339
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-07-21 22:21 UTC by OSIDB Bzimport
Modified: 2026-08-19 15:59 UTC (History)
2 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2026:56007 0 None None None 2026-08-18 14:49:39 UTC
Red Hat Product Errata RHSA-2026:56936 0 None None None 2026-08-19 11:56:45 UTC
Red Hat Product Errata RHSA-2026:56973 0 None None None 2026-08-19 15:59:16 UTC

Description OSIDB Bzimport 2026-07-21 22:21:12 UTC
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Pluggable Auth).  Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and  9.7.0-9.7.1. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server, MySQL Cluster executes to compromise MySQL Server, MySQL Cluster.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of MySQL Server, MySQL Cluster accessible data. CVSS 3.1 Base Score 2.9 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N).

Comment 2 errata-xmlrpc 2026-08-18 14:49:38 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10

Via RHSA-2026:56007 https://access.redhat.com/errata/RHSA-2026:56007

Comment 3 errata-xmlrpc 2026-08-19 11:56:44 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2026:56936 https://access.redhat.com/errata/RHSA-2026:56936

Comment 4 errata-xmlrpc 2026-08-19 15:59:15 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2026:56973 https://access.redhat.com/errata/RHSA-2026:56973


Note You need to log in before you can comment on or make changes to this bug.