Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2023:3712-1

Опубликовано: 20 сент. 2023
Источник: suse-cvrf

Описание

Security update for mariadb

This update for mariadb fixes the following issues:

Updated to version 10.4.31:

  • CVE-2022-47015: Fixed a denial of service that could be triggered by a crafted SQL query (bsc#1207404).

Список пакетов

SUSE Enterprise Storage 7
libmariadbd-devel-10.4.31-150200.3.45.1
libmariadbd19-10.4.31-150200.3.45.1
mariadb-10.4.31-150200.3.45.1
mariadb-client-10.4.31-150200.3.45.1
mariadb-errormessages-10.4.31-150200.3.45.1
mariadb-tools-10.4.31-150200.3.45.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
libmariadbd-devel-10.4.31-150200.3.45.1
libmariadbd19-10.4.31-150200.3.45.1
mariadb-10.4.31-150200.3.45.1
mariadb-client-10.4.31-150200.3.45.1
mariadb-errormessages-10.4.31-150200.3.45.1
mariadb-tools-10.4.31-150200.3.45.1
SUSE Linux Enterprise Server 15 SP2-LTSS
libmariadbd-devel-10.4.31-150200.3.45.1
libmariadbd19-10.4.31-150200.3.45.1
mariadb-10.4.31-150200.3.45.1
mariadb-client-10.4.31-150200.3.45.1
mariadb-errormessages-10.4.31-150200.3.45.1
mariadb-tools-10.4.31-150200.3.45.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
libmariadbd-devel-10.4.31-150200.3.45.1
libmariadbd19-10.4.31-150200.3.45.1
mariadb-10.4.31-150200.3.45.1
mariadb-client-10.4.31-150200.3.45.1
mariadb-errormessages-10.4.31-150200.3.45.1
mariadb-tools-10.4.31-150200.3.45.1

Описание

MariaDB Server before 10.3.34 thru 10.9.3 is vulnerable to Denial of Service. It is possible for function spider_db_mbase::print_warnings to dereference a null pointer.


Затронутые продукты
SUSE Enterprise Storage 7:libmariadbd-devel-10.4.31-150200.3.45.1
SUSE Enterprise Storage 7:libmariadbd19-10.4.31-150200.3.45.1
SUSE Enterprise Storage 7:mariadb-10.4.31-150200.3.45.1
SUSE Enterprise Storage 7:mariadb-client-10.4.31-150200.3.45.1

Ссылки
Уязвимость SUSE-SU-2023:3712-1