CVE-2021-46669: Use After Free
Last updated 24 July 2024
Other sources
MariaDB through 10.5.9 allows attackers to trigger a convertconsttoint use-after-free when the BIGINT data type is used.
— Launchpad
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-46669?
CVE-2021-46669 is a vulnerability in MariaDB through version 10.5.9 that allows attackers to trigger a use-after-free when the BIGINT data type is used.
How severe is CVE-2021-46669?
CVE-2021-46669 has a severity score of 7.5 out of 10.
Which software versions are affected by CVE-2021-46669?
CVE-2021-46669 affects MariaDB versions 10.2.44 to 10.5.9.
How can I fix CVE-2021-46669?
To fix CVE-2021-46669, update MariaDB to version 10.5.10 or later.
Where can I find more information about CVE-2021-46669?
More information about CVE-2021-46669 can be found in the following references: [Link 1](https://jira.mariadb.org/browse/MDEV-25638), [Link 2](https://lists.debian.org/debian-lts-announce/2022/09/msg00023.html), [Link 3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FRJCSPQHYPKTWXXZVDMY6JAHZJQ4TZ5X/).