Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-31624

Опубликовано: 25 мая 2022
Источник: debian
EPSS Низкий

Описание

MariaDB Server before 10.7 is vulnerable to Denial of Service. While executing the plugin/server_audit/server_audit.c method log_statement_ex, the held lock lock_bigbuffer is not released correctly, which allows local users to trigger a denial of service due to the deadlock.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mariadb-10.6fixed1:10.6.5-1package
mariadb-10.5removedpackage
mariadb-10.5fixed1:10.5.15-0+deb11u1bullseyepackage
mariadb-10.3removedpackage
mariadb-10.3fixed1:10.3.34-0+deb10u1busterpackage
mariadb-10.1removedpackage

Примечания

  • https://jira.mariadb.org/browse/MDEV-26556

  • https://github.com/MariaDB/server/commit/d627d00b13ab2f2c0954ea7b77202470cb102944 (mariadb-10.2.41)

EPSS

Процентиль: 11%
0.00039
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 3 лет назад

MariaDB Server before 10.7 is vulnerable to Denial of Service. While executing the plugin/server_audit/server_audit.c method log_statement_ex, the held lock lock_bigbuffer is not released correctly, which allows local users to trigger a denial of service due to the deadlock.

CVSS3: 5.5
redhat
почти 4 года назад

MariaDB Server before 10.7 is vulnerable to Denial of Service. While executing the plugin/server_audit/server_audit.c method log_statement_ex, the held lock lock_bigbuffer is not released correctly, which allows local users to trigger a denial of service due to the deadlock.

CVSS3: 5.5
nvd
около 3 лет назад

MariaDB Server before 10.7 is vulnerable to Denial of Service. While executing the plugin/server_audit/server_audit.c method log_statement_ex, the held lock lock_bigbuffer is not released correctly, which allows local users to trigger a denial of service due to the deadlock.

CVSS3: 5.5
msrc
около 3 лет назад

Описание отсутствует

CVSS3: 5.5
github
около 3 лет назад

MariaDB Server before 10.7 is vulnerable to Denial of Service. While executing the plugin/server_audit/server_audit.c method log_statement_ex, the held lock lock_bigbuffer is not released correctly, which allows local users to trigger a denial of service due to the deadlock.

EPSS

Процентиль: 11%
0.00039
Низкий