CVE Vulnerabilities

CVE-2020-13249

Published: May 20, 2020 | Modified: Nov 21, 2024
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
8.8 MODERATE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

libmariadb/mariadb_lib.c in MariaDB Connector/C before 3.1.8 does not properly validate the content of an OK packet received from a server. NOTE: although mariadb_lib.c was originally based on code shipped for MySQL, this issue does not affect any MySQL components supported by Oracle.

Affected Software

NameVendorStart VersionEnd Version
Connector/cMariadb*3.1.8 (excluding)
Red Hat Enterprise Linux 8RedHatmariadb:10.3-8030020201203011231.229f0a1c*
Red Hat Enterprise Linux 8RedHatmariadb-connector-c-0:3.1.11-2.el8_3*
Red Hat Enterprise Linux 8.0 Update Services for SAP SolutionsRedHatmariadb-connector-c-0:3.1.11-2.el8_0*
Red Hat Enterprise Linux 8.0 Update Services for SAP SolutionsRedHatmariadb:10.3-8000020201221114409.f8e95b4e*
Red Hat Enterprise Linux 8.1 Extended Update SupportRedHatmariadb-connector-c-0:3.1.11-2.el8_1*
Red Hat Enterprise Linux 8.1 Extended Update SupportRedHatmariadb:10.3-8010020201214133427.c27ad7f8*
Red Hat Enterprise Linux 8.2 Extended Update SupportRedHatmariadb:10.3-8020020201214133105.4cda2c84*
Red Hat Enterprise Linux 8.2 Extended Update SupportRedHatmariadb-connector-c-0:3.1.11-2.el8_2*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatrh-mariadb102-galera-0:25.3.29-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 6RedHatrh-mariadb102-mariadb-1:10.2.33-1.el6*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-mariadb102-galera-0:25.3.29-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-mariadb102-mariadb-1:10.2.33-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-mariadb103-galera-0:25.3.31-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-mariadb103-mariadb-3:10.3.27-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUSRedHatrh-mariadb102-galera-0:25.3.29-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUSRedHatrh-mariadb102-mariadb-1:10.2.33-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUSRedHatrh-mariadb103-galera-0:25.3.31-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUSRedHatrh-mariadb103-mariadb-3:10.3.27-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUSRedHatrh-mariadb102-galera-0:25.3.29-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUSRedHatrh-mariadb102-mariadb-1:10.2.33-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUSRedHatrh-mariadb103-galera-0:25.3.31-1.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUSRedHatrh-mariadb103-mariadb-3:10.3.27-1.el7*
Mariadb-10.0Ubuntuesm-apps/xenial*
Mariadb-10.0Ubuntutrusty*
Mariadb-10.0Ubuntuxenial*
Mariadb-10.1Ubuntubionic*
Mariadb-10.1Ubuntuesm-apps/bionic*
Mariadb-10.1Ubuntutrusty*
Mariadb-10.3Ubuntueoan*
Mariadb-10.3Ubuntuesm-apps/focal*
Mariadb-10.3Ubuntufocal*
Mariadb-10.3Ubuntugroovy*
Mariadb-10.3Ubuntutrusty*
Mariadb-5.5Ubuntutrusty*

References