First published: Tue Apr 12 2022(Updated: )
An issue in the component Used_tables_and_const_cache::used_tables_and_const_cache_join of MariaDB Server v10.7 and below was discovered to allow attackers to cause a Denial of Service (DoS) via specially crafted SQL statements.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mariadb Mariadb | <10.3.32 | |
Mariadb Mariadb | >=10.4.0<10.4.22 | |
Mariadb Mariadb | >=10.5.0<10.5.13 | |
Mariadb Mariadb | >=10.6.0<10.6.5 | |
redhat/mariadb | <10.6.5 | 10.6.5 |
redhat/mariadb | <10.5.13 | 10.5.13 |
redhat/mariadb | <10.4.22 | 10.4.22 |
redhat/mariadb | <10.3.32 | 10.3.32 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-27385 is a vulnerability in the component Used_tables_and_const_cache::used_tables_and_const_cache_join of MariaDB Server v10.7 and below that allows attackers to cause a Denial of Service (DoS) via specially crafted SQL statements.
CVE-2022-27385 affects MariaDB versions 10.7 and below.
CVE-2022-27385 has a severity rating of 7.5 (high).
Yes, the fix for CVE-2022-27385 is available in MariaDB version 10.6.5 and above.
You can find more information about CVE-2022-27385 on the official MariaDB website and the CVE database.