CVE Vulnerabilities

CVE-2021-46661

Published: Feb 01, 2022 | Modified: Nov 07, 2023
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

MariaDB through 10.5.9 allows an application crash in find_field_in_tables and find_order_in_list via an unused common table expression (CTE).

Affected Software

Name Vendor Start Version End Version
Mariadb Mariadb 10.2.0 (including) 10.2.43 (excluding)
Mariadb Mariadb 10.3.0 (including) 10.3.34 (excluding)
Mariadb Mariadb 10.4.0 (including) 10.4.24 (excluding)
Mariadb Mariadb 10.5.0 (including) 10.5.15 (excluding)
Mariadb Mariadb 10.6.0 (including) 10.6.7 (excluding)
Mariadb Mariadb 10.7.0 (including) 10.7.3 (excluding)

References