CVE-2022-27382: High severity mariadb server vulnerability
Last updated 24 July 2024
Other sources
MariaDB Server v10.7 and below was discovered to contain a segmentation fault via the component Itemfield::usedtables/updatedependmapfororder.
— Launchpad
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-27382?
CVE-2022-27382 is a vulnerability discovered in MariaDB Server v10.7 and below that allows for a segmentation fault via the component Item_field::used_tables/update_depend_map_for_order.
What is the severity of CVE-2022-27382?
The severity of CVE-2022-27382 is high, with a CVSS score of 7.5.
Which versions of MariaDB Server are affected?
MariaDB Server v10.4.0 to v10.7.4 are affected by CVE-2022-27382.
How can I fix CVE-2022-27382?
To fix CVE-2022-27382, update your MariaDB Server to version 10.7.4 or higher.
Where can I find more information about CVE-2022-27382?
You can find more information about CVE-2022-27382 in the references provided: https://jira.mariadb.org/browse/MDEV-26402, https://security.netapp.com/advisory/ntap-20220526-0004/, https://github.com/MariaDB/server/commit/807945f2eb5fa22e6f233cc17b85a2e141efe2c8