CVE Vulnerabilities

CVE-2020-13249

Published: May 20, 2020 | Modified: Nov 07, 2023
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
8.8 MODERATE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Ubuntu
MEDIUM

libmariadb/mariadb_lib.c in MariaDB Connector/C before 3.1.8 does not properly validate the content of an OK packet received from a server. NOTE: although mariadb_lib.c was originally based on code shipped for MySQL, this issue does not affect any MySQL components supported by Oracle.

Affected Software

Name Vendor Start Version End Version
Connector/c Mariadb * 3.1.8 (excluding)
Red Hat Enterprise Linux 8 RedHat mariadb:10.3-8030020201203011231.229f0a1c *
Red Hat Enterprise Linux 8 RedHat mariadb-connector-c-0:3.1.11-2.el8_3 *
Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions RedHat mariadb-connector-c-0:3.1.11-2.el8_0 *
Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions RedHat mariadb:10.3-8000020201221114409.f8e95b4e *
Red Hat Enterprise Linux 8.1 Extended Update Support RedHat mariadb-connector-c-0:3.1.11-2.el8_1 *
Red Hat Enterprise Linux 8.1 Extended Update Support RedHat mariadb:10.3-8010020201214133427.c27ad7f8 *
Red Hat Enterprise Linux 8.2 Extended Update Support RedHat mariadb:10.3-8020020201214133105.4cda2c84 *
Red Hat Enterprise Linux 8.2 Extended Update Support RedHat mariadb-connector-c-0:3.1.11-2.el8_2 *
Red Hat Software Collections for Red Hat Enterprise Linux 6 RedHat rh-mariadb102-galera-0:25.3.29-1.el6 *
Red Hat Software Collections for Red Hat Enterprise Linux 6 RedHat rh-mariadb102-mariadb-1:10.2.33-1.el6 *
Red Hat Software Collections for Red Hat Enterprise Linux 7 RedHat rh-mariadb102-galera-0:25.3.29-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7 RedHat rh-mariadb102-mariadb-1:10.2.33-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7 RedHat rh-mariadb103-galera-0:25.3.31-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7 RedHat rh-mariadb103-mariadb-3:10.3.27-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS RedHat rh-mariadb102-galera-0:25.3.29-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS RedHat rh-mariadb102-mariadb-1:10.2.33-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS RedHat rh-mariadb103-galera-0:25.3.31-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS RedHat rh-mariadb103-mariadb-3:10.3.27-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS RedHat rh-mariadb102-galera-0:25.3.29-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS RedHat rh-mariadb102-mariadb-1:10.2.33-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS RedHat rh-mariadb103-galera-0:25.3.31-1.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS RedHat rh-mariadb103-mariadb-3:10.3.27-1.el7 *
Mariadb-10.0 Ubuntu esm-apps/xenial *
Mariadb-10.0 Ubuntu trusty *
Mariadb-10.0 Ubuntu xenial *
Mariadb-10.1 Ubuntu bionic *
Mariadb-10.1 Ubuntu trusty *
Mariadb-10.3 Ubuntu eoan *
Mariadb-10.3 Ubuntu focal *
Mariadb-10.3 Ubuntu groovy *
Mariadb-10.3 Ubuntu trusty *
Mariadb-5.5 Ubuntu trusty *

References