Skip to content
VulniPulse
Highest advisory severityMedium 2 vendors · 2 advisories

CVE-2026-71084

CVE-2026-71084: 2 tracked advisory records across NetApp, Red Hat. Compare vendor sources and published fix guidance.

Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.

Vendor advisory comparison

NetApp

1 advisory
  • Advisory severityMedium6.8

    Medium [CVE-2026-71073 +2] August 2026 MySQL Connector/ODBC Vulnerabilities in NetApp Products

    NTAP-20260821-0007Source published Source updated

    This bulletin covers 3 CVEs. The products, versions, score and guidance below describe the bulletin; check its source for applicability to this specific CVE.

    MySQL Connector/ODBC version 26.7.0 is susceptible to vulnerabilities that allow low privileged or unauthenticated attackers with network access via multiple protocols or logon to the infrastructure where MySQL Connectors executes to compromise MySQL Connectors. Refer to “Oracle Critical Security Patch Update Advisory - August 2026” for additional details. Successful attacks of these vulnerabilities can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Connectors and unauthorized read access to a subset of MySQL Connectors accessible data. NetApp states there is no workaround available at this time.

    Affected products in this advisory
    No product details extracted. Check the source bulletin.
    Source-reported affected versions
    Affected-version details not available in this record.
    Source-reported fixed versions
    No fixed-version detail extracted. This does not mean no fix exists.
    Mitigation guidance
    • Refer to “Oracle Critical Security Patch Update Advisory - August 2026” for additional details.

Red Hat

1 advisory
  • Advisory severityMedium6.8

    Medium [CVE-2026-71084] Denial of Service via unauthenticated local access

    CVE-2026-71084Source published Source updated

    Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/ODBC). The supported version that is affected is 26.7.0. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Connectors executes to compromise MySQL Connectors. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Connectors and unauthorized read access to a subset of MySQL Connectors accessible data. CVSS 3.1 Base Score 6.8 (Confidentiality and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H). This can lead to a complete denial of service (DoS) by causing the component to crash repeatedly. This Moderate severity flaw in…

    Affected products in this advisory
    • Red Hat Enterprise Linux 6
    • Red Hat Enterprise Linux 7
    • Red Hat package: mysql-connector-odbc
    Source-reported affected versions
    • 26.7.0
    Source-reported fixed versions
    No fixed-version detail extracted. This does not mean no fix exists.
    Mitigation guidance
    • Since this vulnerability requires local logon access, ensure that only trusted users have interactive access to systems running `mysql-connector-odbc`. If the `mysql-connector-odbc` package is not actively used, consider removing it to eliminate the attack surface.

Android app · Google Play

Turn CVE research into alerts on your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery