CVE Vulnerabilities

CVE-2022-32083

Published: Jul 01, 2022 | Modified: Oct 25, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
6.5 MODERATE
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM

MariaDB v10.2 to v10.6.1 was discovered to contain a segmentation fault via the component Item_subselect::init_expr_cache_tracker.

Affected Software

Name Vendor Start Version End Version
Mariadb Mariadb 10.2.0 (including) 10.2.44 (excluding)
Mariadb Mariadb 10.3.0 (including) 10.3.35 (excluding)
Mariadb Mariadb 10.4.0 (including) 10.4.25 (excluding)
Mariadb Mariadb 10.5.0 (including) 10.5.16 (excluding)
Mariadb Mariadb 10.6.0 (including) 10.6.8 (excluding)
Mariadb Mariadb 10.7.0 (including) 10.7.4 (excluding)
Red Hat Enterprise Linux 8 RedHat mariadb:10.3-8060020220715055054.ad008a3a *
Red Hat Software Collections for Red Hat Enterprise Linux 7 RedHat rh-mariadb105-mariadb-3:10.5.16-2.el7 *
Red Hat Software Collections for Red Hat Enterprise Linux 7 RedHat rh-mariadb103-mariadb-3:10.3.35-1.el7 *
Mariadb-10.0 Ubuntu xenial *
Mariadb-10.1 Ubuntu bionic *
Mariadb-10.3 Ubuntu focal *
Mariadb-10.5 Ubuntu impish *
Mariadb-10.6 Ubuntu jammy *
Mariadb-10.6 Ubuntu upstream *
Mariadb-5.5 Ubuntu trusty *

References