Search CVE reports
311 – 320 of 689 results
CVE-2021-46666
Medium prioritySome fixes available 2 of 4
MariaDB before 10.6.2 allows an application crash because of mishandling of a pushdown from a HAVING clause to a WHERE clause.
3 affected packages
mariadb-10.3, mariadb-10.5, mariadb-10.6
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mariadb-10.3 | — | — | Fixed | — | Ignored |
mariadb-10.5 | — | — | — | — | Ignored |
mariadb-10.6 | Not in release | Fixed | — | — | Ignored |
CVE-2021-46665
Low prioritySome fixes available 3 of 5
MariaDB through 10.5.9 allows a sql_parse.cc application crash because of incorrect used_tables expectations.
3 affected packages
mariadb-10.3, mariadb-10.5, mariadb-10.6
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mariadb-10.3 | — | — | Fixed | — | Ignored |
mariadb-10.5 | — | — | — | — | Ignored |
mariadb-10.6 | Not in release | Fixed | — | — | Ignored |
CVE-2021-46664
Medium prioritySome fixes available 3 of 5
MariaDB through 10.5.9 allows an application crash in sub_select_postjoin_aggr for a NULL value of aggr.
3 affected packages
mariadb-10.3, mariadb-10.5, mariadb-10.6
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mariadb-10.3 | — | — | Fixed | — | Ignored |
mariadb-10.5 | — | — | — | — | Ignored |
mariadb-10.6 | Not in release | Fixed | — | — | Ignored |
CVE-2021-46663
Medium prioritySome fixes available 3 of 5
MariaDB through 10.5.13 allows a ha_maria::extra application crash via certain SELECT statements.
3 affected packages
mariadb-10.3, mariadb-10.5, mariadb-10.6
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mariadb-10.3 | — | — | Fixed | — | Ignored |
mariadb-10.5 | — | — | — | — | Ignored |
mariadb-10.6 | Not in release | Fixed | — | — | Ignored |
CVE-2021-46662
Medium prioritySome fixes available 1 of 4
MariaDB through 10.5.9 allows a set_var.cc application crash via certain uses of an UPDATE statement in conjunction with a nested subquery.
3 affected packages
mariadb-10.3, mariadb-10.5, mariadb-10.6
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mariadb-10.3 | — | — | Fixed | — | Ignored |
mariadb-10.5 | — | — | — | — | Ignored |
mariadb-10.6 | Not in release | Not affected | — | — | Ignored |
CVE-2021-46661
Medium prioritySome fixes available 3 of 5
MariaDB through 10.5.9 allows an application crash in find_field_in_tables and find_order_in_list via an unused common table expression (CTE).
3 affected packages
mariadb-10.3, mariadb-10.5, mariadb-10.6
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mariadb-10.3 | — | — | Fixed | — | Ignored |
mariadb-10.5 | — | — | — | — | Ignored |
mariadb-10.6 | Not in release | Fixed | — | — | Ignored |
CVE-2021-46659
Medium prioritySome fixes available 2 of 4
MariaDB before 10.7.2 allows an application crash because it does not recognize that SELECT_LEX::nest_level is local to each VIEW.
3 affected packages
mariadb-10.3, mariadb-10.5, mariadb-10.6
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mariadb-10.3 | — | — | Fixed | — | Ignored |
mariadb-10.5 | — | — | — | — | Ignored |
mariadb-10.6 | Not in release | Not affected | — | — | Ignored |
CVE-2021-46658
Medium prioritysave_window_function_values in MariaDB before 10.6.3 allows an application crash because of incorrect handling of with_window_func=true for a subquery.
3 affected packages
mariadb-10.3, mariadb-10.5, mariadb-10.6
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mariadb-10.3 | — | — | Needs evaluation | — | Ignored |
mariadb-10.5 | — | — | — | — | Ignored |
mariadb-10.6 | Not in release | Not affected | — | — | Ignored |
CVE-2021-46657
Medium priorityget_sort_by_table in MariaDB before 10.6.2 allows an application crash via certain subquery uses of ORDER BY.
3 affected packages
mariadb-10.3, mariadb-10.5, mariadb-10.6
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
mariadb-10.3 | — | — | Needs evaluation | — | Ignored |
mariadb-10.5 | — | — | — | — | Ignored |
mariadb-10.6 | Not in release | Not affected | — | — | Ignored |
CVE-2021-46322
Medium priorityDuktape v2.99.99 was discovered to contain a SEGV vulnerability via the component duk_push_tval in duktape/duk_api_stack.c.
14 affected packages
ceph, duktape, mariadb-10.0, mariadb-10.1, mariadb-10.3...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
ceph | Not affected | Not affected | Not affected | Not affected | Not affected |
duktape | Not affected | Not affected | Vulnerable | Needs evaluation | Ignored |
mariadb-10.0 | Not in release | Not in release | Not in release | Not in release | Needs evaluation |
mariadb-10.1 | Not in release | Not in release | Not in release | Needs evaluation | Not in release |
mariadb-10.3 | Not in release | Not in release | Needs evaluation | Not in release | Not in release |
mariadb-10.5 | — | — | Not in release | Not in release | Not in release |
mariadb-5.5 | Not in release | Not in release | Not in release | Not in release | Not in release |
mysql-5.5 | Not in release | Not in release | Not in release | Not in release | Not in release |
mysql-5.6 | Not in release | Not in release | Not in release | Not in release | Not in release |
mysql-5.7 | Not in release | Not in release | Not in release | Not affected | Not affected |
mysql-8.0 | Not affected | Not affected | Not affected | Not in release | Not in release |
percona-server-5.6 | Not in release | Not in release | Not in release | Not in release | Needs evaluation |
percona-xtradb-cluster-5.5 | Not in release | Not in release | Not in release | Not in release | Not in release |
percona-xtradb-cluster-5.6 | Not in release | Not in release | Not in release | Not in release | Needs evaluation |