CVE-2022-27449: High severity mariadb vulnerability
Last updated 24 July 2024
Other sources
MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/itemfunc.cc:148.
— Launchpad
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this MariaDB Server vulnerability?
The vulnerability ID for this MariaDB Server vulnerability is CVE-2022-27449.
What is the severity of CVE-2022-27449?
CVE-2022-27449 has a severity of 7.5 (high).
What is the affected version range of MariaDB Server for CVE-2022-27449?
CVE-2022-27449 affects MariaDB Server versions 10.3.35 and below, 10.4.0 to 10.4.25, 10.5.0 to 10.5.16, 10.6.0 to 10.6.8, and 10.7.0 to 10.7.4.
How can I fix CVE-2022-27449?
To fix CVE-2022-27449, it is recommended to update MariaDB Server to version 10.3.36, 10.4.26, 10.5.17, 10.6.9, or 10.7.5.
Where can I find more information about CVE-2022-27449?
You can find more information about CVE-2022-27449 in the following references: https://jira.mariadb.org/browse/MDEV-28089, https://lists.debian.org/debian-lts-announce/2022/09/msg00023.html, https://security.netapp.com/advisory/ntap-20220526-0006/