Описание
MariaDB before 10.6.5 has a sql_lex.cc integer overflow, leading to an application crash.
An integer overflow vulnerability was found in MariaDB, where an invalid size of ref_pointer_array is allocated. This issue results in a denial of service.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 7 | mariadb | Out of support scope | ||
Red Hat Enterprise Linux 9 | mariadb | Not affected | ||
Red Hat OpenStack Platform 13 (Queens) | mariadb | Out of support scope | ||
Red Hat Enterprise Linux 8 | mariadb | Fixed | RHSA-2022:1556 | 26.04.2022 |
Red Hat Enterprise Linux 8 | mariadb | Fixed | RHSA-2022:1557 | 26.04.2022 |
Red Hat Enterprise Linux 8.4 Extended Update Support | mariadb | Fixed | RHSA-2022:4818 | 31.05.2022 |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | rh-mariadb105-galera | Fixed | RHSA-2022:1007 | 22.03.2022 |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | rh-mariadb105-mariadb | Fixed | RHSA-2022:1007 | 22.03.2022 |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | rh-mariadb103-galera | Fixed | RHSA-2022:1010 | 22.03.2022 |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | rh-mariadb103-mariadb | Fixed | RHSA-2022:1010 | 22.03.2022 |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=2050030mariadb: Integer overflow in sql_lex.cc integer leading to crash
EPSS
Процентиль: 13%
0.00044
Низкий
5.5 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.5
ubuntu
больше 3 лет назад
MariaDB before 10.6.5 has a sql_lex.cc integer overflow, leading to an application crash.
CVSS3: 5.5
nvd
больше 3 лет назад
MariaDB before 10.6.5 has a sql_lex.cc integer overflow, leading to an application crash.
CVSS3: 5.5
debian
больше 3 лет назад
MariaDB before 10.6.5 has a sql_lex.cc integer overflow, leading to an ...
CVSS3: 7.5
github
больше 3 лет назад
MariaDB before 10.6.5 has a sql_lex.cc integer overflow, leading to an application crash.
EPSS
Процентиль: 13%
0.00044
Низкий
5.5 Medium
CVSS3