MySQL vulnerabilities on Gateway OVA
search cancel

MySQL vulnerabilities on Gateway OVA

book

Article ID: 393519

calendar_today

Updated On:

Products

CA API Gateway

Issue/Introduction

Do we need to upgrade to MySQL v9.2.x to remediate these MySQL vulnerabilities?

CVE-2024-21130, CVE-2024-21207, CVE-2025-21500, CVE-2024-21134, CVE-2025-21522, CVE-2024-21173, CVE-2024-21193, CVE-2024-21238, CVE-2024-21162, CVE-2024-21201, CVE-2025-21519, CVE-2025-21536, CVE-2025-21543, CVE-2024-21196, CVE-2025-21555, CVE-2025-21523, CVE-2024-21166, CVE-2024-21197, CVE-2024-21241, CVE-2024-21236, CVE-2025-21546, CVE-2024-21179, CVE-2024-21199, CVE-2024-21171, CVE-2025-21534, CVE-2025-21540, CVE-2024-21177, CVE-2025-21520, CVE-2024-21218, CVE-2024-21219, CVE-2024-21127, CVE-2024-21212, CVE-2024-21125, CVE-2024-21239, CVE-2025-21497, CVE-2025-21529, CVE-2024-21213, CVE-2025-21559, CVE-2025-21503, CVE-2024-21142, CVE-2025-21505, CVE-2024-21194, CVE-2024-20996, CVE-2024-21198, CVE-2025-21494, CVE-2024-21237, CVE-2025-21504, CVE-2024-21129, CVE-2025-21491, CVE-2025-21490, CVE-2024-21231, CVE-2024-11053, CVE-2025-21521, CVE-2024-21165, CVE-2025-21518, CVE-2024-21163, CVE-2024-21230, CVE-2024-21203, CVE-2025-21525, CVE-2024-21247, CVE-2025-21531, CVE-2025-21501

Environment

All Supported versions of API Gateway

Cause

Multiple Vulnerability fixes

Resolution

CVE ID Severity Review comments
CVE-2024-21130 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21207 Medium Supported versions affected are 8.0.38 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21500 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21134 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21522 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21173 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21193 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21238 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21162 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21201 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21519 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21536 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21543 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21196 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21555 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21523 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21166 Medium Supported versions affected are 8.0.36 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21197 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21241 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21236 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21546 Low Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21179 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21199 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21171 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21534 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21540 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21177 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21520 Low Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21218 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21219 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21127 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21212 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21125 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21239 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21497 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21529 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21213 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21559 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21503 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21142 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21505 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21194 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-20996 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21198 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21494 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21237 Low Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21504 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21129 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21491 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21490 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21231 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-11053 Low Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21521 High Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21165 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21518 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21163 Medium Supported versions affected are 8.0.37 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21230 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21203 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21525 Medium Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2024-21247 Low Supported versions affected are 8.0.39 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21531 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.
CVE-2025-21501 Medium Supported versions affected are 8.0.40 and earlier. The latest MPP patch (MySQL v8.0.41) have the fix or no impact.

 

Fixed in MySQL v8.0.41 which was included in January 2025 Monthly Platform Patch for API Gateway v11.1 for Debian 12.