First published: Tue Feb 01 2022(Updated: )
MariaDB through 10.5.9 allows a sql_parse.cc application crash because of incorrect used_tables expectations.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mariadb Mariadb | >=10.2.0<10.2.43 | |
Mariadb Mariadb | >=10.3.0<10.3.34 | |
Mariadb Mariadb | >=10.4.0<10.4.24 | |
Mariadb Mariadb | >=10.5.0<10.5.15 | |
Mariadb Mariadb | >=10.6.0<10.6.7 | |
Mariadb Mariadb | >=10.7.0<10.7.3 | |
Fedoraproject Fedora | =34 | |
Fedoraproject Fedora | =35 | |
Fedoraproject Fedora | =36 | |
redhat/mariadb | <10.2.43 | 10.2.43 |
redhat/mariadb | <10.3.34 | 10.3.34 |
redhat/mariadb | <10.4.24 | 10.4.24 |
redhat/mariadb | <10.5.15 | 10.5.15 |
redhat/mariadb | <10.6.7 | 10.6.7 |
redhat/mariadb | <10.7.3 | 10.7.3 |
redhat/mariadb | <10.8.2 | 10.8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-46665 is classified as a medium severity vulnerability that can lead to application crashes.
To fix CVE-2021-46665, upgrade to MariaDB version 10.5.15 or later.
CVE-2021-46665 affects MariaDB versions prior to 10.5.15, including 10.2.43, 10.3.34, and 10.4.24.
CVE-2021-46665 is a denial of service vulnerability due to application crashes from incorrect used_tables expectations.
Yes, specific Fedora releases, including Fedora 34, 35, and 36, may be affected by CVE-2021-46665.