CVE-2023-52968: Medium severity mariadb vulnerability
MariaDB Server 10.4 before 10.4.33, 10.5 before 10.5.24, 10.6 before 10.6.17, 10.7 through 10.11 before 10.11.7, 11.0 before 11.0.5, and 11.1 before 11.1.4 calls fixfieldsifneeded under mysqlderivedprepare when derived is not yet prepared, leading to a findfieldintable crash.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-52968?
CVE-2023-52968 is classified as a moderate severity vulnerability.
How do I fix CVE-2023-52968?
To fix CVE-2023-52968, upgrade MariaDB Server to version 10.4.33, 10.5.24, 10.6.17, 10.11.7 or higher.
What versions of MariaDB Server are affected by CVE-2023-52968?
CVE-2023-52968 affects MariaDB Server versions prior to 10.4.33, 10.5.24, 10.6.17, 10.11.7, 11.0.5, and 11.1.4.
What is the impact of CVE-2023-52968 on MariaDB Server?
The impact of CVE-2023-52968 is a potential crash of the server when calling fix_fields_if_needed under specific conditions.
How can I determine if my MariaDB Server is vulnerable to CVE-2023-52968?
You can determine vulnerability by checking if your MariaDB Server version is prior to the specified patched versions for CVE-2023-52968.