CVE-2022-27385: SQL Injection
An issue in the component Usedtablesandconstcache::usedtablesandconstcachejoin of MariaDB Server v10.7 and below was discovered to allow attackers to cause a Denial of Service (DoS) via specially crafted SQL statements.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-27385?
CVE-2022-27385 is a vulnerability in the component Used_tables_and_const_cache::used_tables_and_const_cache_join of MariaDB Server v10.7 and below that allows attackers to cause a Denial of Service (DoS) via specially crafted SQL statements.
How does CVE-2022-27385 affect MariaDB?
CVE-2022-27385 affects MariaDB versions 10.7 and below.
What is the severity of CVE-2022-27385?
CVE-2022-27385 has a severity rating of 7.5 (high).
Is there a fix available for CVE-2022-27385?
Yes, the fix for CVE-2022-27385 is available in MariaDB version 10.6.5 and above.
Where can I find more information about CVE-2022-27385?
You can find more information about CVE-2022-27385 on the official MariaDB website and the CVE database.