Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-32091

Опубликовано: 01 июл. 2022
Источник: debian
EPSS Низкий

Описание

MariaDB v10.7 was discovered to contain an use-after-poison in in __interceptor_memset at /libsanitizer/sanitizer_common/sanitizer_common_interceptors.inc.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mariadb-10.6fixed1:10.6.9-1package
mariadb-10.5removedpackage
mariadb-10.5fixed1:10.5.18-0+deb11u1bullseyepackage
mariadb-10.3removedpackage

Примечания

  • MariaDB bug: https://jira.mariadb.org/browse/MDEV-26431

  • MariaDB duplicate bug: https://jira.mariadb.org/browse/MDEV-23809

  • Not reproductible on 10.1

  • Fixed in: 10.3.36, 10.4.26, 10.5.17, 10.6.9, 10.7.5, 10.8.4, 10.9.2

  • Commit [1/2]: https://github.com/MariaDB/server/commit/2cd98c95dee7ae77e6280b4e047a2ebec00b5442 (mariadb-10.3.36)

  • Commit [2/2]: https://github.com/MariaDB/server/commit/37a3d4467e3115f4d4dfcad0a6ee3c23e785f524 (mariadb-10.3.36)

EPSS

Процентиль: 51%
0.00276
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 3 года назад

MariaDB v10.7 was discovered to contain an use-after-poison in in __interceptor_memset at /libsanitizer/sanitizer_common/sanitizer_common_interceptors.inc.

CVSS3: 6.5
redhat
почти 4 года назад

MariaDB v10.7 was discovered to contain an use-after-poison in in __interceptor_memset at /libsanitizer/sanitizer_common/sanitizer_common_interceptors.inc.

CVSS3: 7.5
nvd
почти 3 года назад

MariaDB v10.7 was discovered to contain an use-after-poison in in __interceptor_memset at /libsanitizer/sanitizer_common/sanitizer_common_interceptors.inc.

CVSS3: 7.5
msrc
почти 3 года назад

Описание отсутствует

CVSS3: 9.8
github
почти 3 года назад

MariaDB v10.7 was discovered to contain an use-after-poison in in __interceptor_memset at /libsanitizer/sanitizer_common/sanitizer_common_interceptors.inc.

EPSS

Процентиль: 51%
0.00276
Низкий