CVE-2022-32081: Use After Free
Last updated 24 July 2024
Other sources
MariaDB v10.4 to v10.7 was discovered to contain an use-after-poison in prepareinplaceaddvirtual at /storage/innobase/handler/handler0alter.cc.
— Launchpad
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-32081?
CVE-2022-32081 is a vulnerability in MariaDB v10.4 to v10.7 that allows for use-after-poison in prepare_inplace_add_virtual.
How severe is CVE-2022-32081?
CVE-2022-32081 has a severity rating of 7.5, which is considered high.
What software versions are affected by CVE-2022-32081?
CVE-2022-32081 affects MariaDB versions 10.4 to 10.7.
How can I fix CVE-2022-32081?
To fix CVE-2022-32081, update your MariaDB installation to version 10.10.1 or higher.
Where can I find more information about CVE-2022-32081?
You can find more information about CVE-2022-32081 on the following references: [Link 1](https://jira.mariadb.org/browse/MDEV-26420), [Link 2](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=2114892), [Link 3](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=2114893).