CVE Vulnerabilities

CVE-2021-46659

Published: Jan 29, 2022 | Modified: Nov 21, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
5.5 LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM

MariaDB before 10.7.2 allows an application crash because it does not recognize that SELECT_LEX::nest_level is local to each VIEW.

Affected Software

Name Vendor Start Version End Version
Mariadb Mariadb 5.5.0 (including) 10.2.42 (excluding)
Mariadb Mariadb 10.3.0 (including) 10.3.33 (excluding)
Mariadb Mariadb 10.4.0 (including) 10.4.23 (excluding)
Mariadb Mariadb 10.5.0 (including) 10.5.14 (excluding)
Mariadb Mariadb 10.6.0 (including) 10.6.6 (excluding)
Mariadb Mariadb 10.7.0 (including) 10.7.2 (excluding)
Mariadb-10.3 Ubuntu focal *
Mariadb-10.3 Ubuntu trusty *
Mariadb-10.3 Ubuntu xenial *
Mariadb-10.5 Ubuntu impish *
Mariadb-10.5 Ubuntu trusty *
Mariadb-10.5 Ubuntu xenial *
Mariadb-10.6 Ubuntu kinetic *
Mariadb-10.6 Ubuntu lunar *
Mariadb-10.6 Ubuntu trusty *
Mariadb-10.6 Ubuntu xenial *
Red Hat Enterprise Linux 8 RedHat mariadb:10.5-8060020220614163302.ad008a3a *
Red Hat Enterprise Linux 8 RedHat mariadb:10.3-8060020220715055054.ad008a3a *
Red Hat Enterprise Linux 9 RedHat mariadb-3:10.5.16-2.el9_0 *
Red Hat Software Collections for Red Hat Enterprise Linux 7 RedHat rh-mariadb105-mariadb-3:10.5.16-2.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7 RedHat rh-mariadb103-mariadb-3:10.3.35-1.el7 *

References