Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-46669

Опубликовано: 10 мая 2021
Источник: redhat
CVSS3: 6.5

Описание

MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used.

A use-after-free vulnerability was found in MariaDB. This flaw allows attackers to trigger a convert_const_to_int() use-after-free when the BIGINT data type is used, resulting in a denial of service.

Меры по смягчению последствий

Mitigation for this issue is not available, please update the affected package.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7mariadbOut of support scope
Red Hat OpenStack Platform 13 (Queens)mariadbOut of support scope
Red Hat Enterprise Linux 8mariadbFixedRHSA-2022:582602.08.2022
Red Hat Enterprise Linux 8mariadbFixedRHSA-2022:644313.09.2022
Red Hat Enterprise Linux 9mariadbFixedRHSA-2022:594809.08.2022
Red Hat Software Collections for Red Hat Enterprise Linux 7rh-mariadb105-mariadbFixedRHSA-2022:575928.07.2022
Red Hat Software Collections for Red Hat Enterprise Linux 7rh-mariadb103-mariadbFixedRHSA-2022:630601.09.2022

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=2050034mariadb: MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used.

CVSS3: 7.5
nvd
больше 3 лет назад

MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used.

CVSS3: 7.5
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.5
debian
больше 3 лет назад

MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_ ...

CVSS3: 7.5
github
больше 3 лет назад

MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used.

6.5 Medium

CVSS3