CVE-2022-27452: High severity mariadb vulnerability
Last updated 24 July 2024
Other sources
MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/itemcmpfunc.cc.
— Launchpad
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-27452?
CVE-2022-27452 is a vulnerability in MariaDB Server v10.9 and below that allows for a segmentation fault via the component sql/item_cmpfunc.cc.
What is the severity of CVE-2022-27452?
CVE-2022-27452 has a severity of 7.5 (high).
Which software versions are affected by CVE-2022-27452?
CVE-2022-27452 affects MariaDB Server versions 10.3.0 to 10.3.35, 10.4.0 to 10.4.25, 10.5.0 to 10.5.16, 10.6.0 to 10.6.8, and 10.7.0 to 10.7.4.
How can I fix CVE-2022-27452?
To fix CVE-2022-27452, you should update your MariaDB Server to version 10.7.4, 10.6.8, 10.5.16, 10.4.25, or 10.3.35.
Where can I find more information about CVE-2022-27452?
You can find more information about CVE-2022-27452 at the following references: [MDEV-28090](https://jira.mariadb.org/browse/MDEV-28090), [Debian LTS Announcement](https://lists.debian.org/debian-lts-announce/2022/09/msg00023.html), [NetApp Security Advisory](https://security.netapp.com/advisory/ntap-20220526-0006/).