Executive brief
Oracle MySQL Connector/C++ is a library used by applications to communicate with MySQL databases. A vulnerability in this component allows an unauthenticated attacker to remotely cause the application to hang or crash. This results in a denial-of-service, preventing legitimate users and systems from accessing the database through the affected application.
Technical details
A vulnerability in the Connector/C++ component of Oracle MySQL Connectors allows for a remote denial-of-service. The flaw is easily exploitable by an unauthenticated attacker with network access via multiple protocols. Successful exploitation results in a frequently repeatable crash or a hang (complete DOS) of the MySQL Connector. The vulnerability affects supported versions 9.7.0 through 9.7.1. Users are advised to consult the Oracle Critical Patch Update for July 2026 for remediation guidance.
Affected products
- Oracle MySQL Connectors (Connector/C++) 9.7.0 - 9.7.1
Timeline
- 2026-07-21: advisory: Published by Oracle and NVD