Логотип exploitDog
bind:CVE-2022-31026
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-31026

Количество 2

Количество 2

nvd логотип

CVE-2022-31026

больше 3 лет назад

Trilogy is a client library for MySQL. When authenticating, a malicious server could return a specially crafted authentication packet, causing the client to read and return up to 12 bytes of data from an uninitialized variable in stack memory. Users of the trilogy gem should upgrade to version 2.1.1 This issue can be avoided by only connecting to trusted servers.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-5g4r-2qhx-vqfm

больше 3 лет назад

Use of Uninitialized Variable in trilogy

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-31026

Trilogy is a client library for MySQL. When authenticating, a malicious server could return a specially crafted authentication packet, causing the client to read and return up to 12 bytes of data from an uninitialized variable in stack memory. Users of the trilogy gem should upgrade to version 2.1.1 This issue can be avoided by only connecting to trusted servers.

CVSS3: 5.9
0%
Низкий
больше 3 лет назад
github логотип
GHSA-5g4r-2qhx-vqfm

Use of Uninitialized Variable in trilogy

CVSS3: 5.9
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу