CVE-2022-27449 – mariadb: assertion failure in sql/item_func.cc
https://notcve.org/view.php?id=CVE-2022-27449
MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_func.cc:148. Se ha detectado que MariaDB Server versiones v10.9 y anteriores, contienen un fallo de segmentación por medio del componente sql/item_func.cc:148 A flaw was found in the MariaDB Server. It contains a segmentation fault via the component, sql/item_func.cc:148, affecting availability. • https://jira.mariadb.org/browse/MDEV-28089 https://lists.debian.org/debian-lts-announce/2022/09/msg00023.html https://security.netapp.com/advisory/ntap-20220526-0006 https://access.redhat.com/security/cve/CVE-2022-27449 https://bugzilla.redhat.com/show_bug.cgi?id=2075695 • CWE-617: Reachable Assertion •
CVE-2022-27446 – mariadb: crash when using HAVING with IS NULL predicate in an equality
https://notcve.org/view.php?id=CVE-2022-27446
MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_cmpfunc.h. Se ha detectado que MariaDB Server versiones v10.9 y anteriores, contienen un fallo de segmentación por medio del componente sql/item_cmpfunc.h A flaw was found in the MariaDB Server. It contains a segmentation fault via the component, sql/item_cmpfunc.h, impacting availability. • https://jira.mariadb.org/browse/MDEV-28082 https://security.netapp.com/advisory/ntap-20220526-0006 https://access.redhat.com/security/cve/CVE-2022-27446 https://bugzilla.redhat.com/show_bug.cgi?id=2075692 • CWE-617: Reachable Assertion •
CVE-2022-27447 – mariadb: use-after-poison in Binary_string::free_buffer
https://notcve.org/view.php?id=CVE-2022-27447
MariaDB Server v10.9 and below was discovered to contain a use-after-free via the component Binary_string::free_buffer() at /sql/sql_string.h. Se ha detectado que MariaDB Server versiones v10.9 y anteriores, contienen un uso de memoria previamente liberada por medio del componente Binary_string::free_buffer() en el archivo /sql/sql_string.h A flaw was found in the MariaDB Server. It contains a use-after-free via the component,Binary_string::free_buffer() at /sql/sql_string.h, affecting availability. • https://jira.mariadb.org/browse/MDEV-28099 https://lists.debian.org/debian-lts-announce/2022/09/msg00023.html https://security.netapp.com/advisory/ntap-20220526-0006 https://access.redhat.com/security/cve/CVE-2022-27447 https://bugzilla.redhat.com/show_bug.cgi?id=2075693 • CWE-416: Use After Free CWE-617: Reachable Assertion •
CVE-2022-27445 – mariadb: assertion failure in compare_order_elements
https://notcve.org/view.php?id=CVE-2022-27445
MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/sql_window.cc. Se ha detectado que MariaDB Server versiones v10.9 y anteriores, contienen un fallo de segmentación por medio del componente sql/sql_window.cc A flaw was found in the MariaDB Server. It contains a segmentation fault via the component, sql/sql_window.cc, impacting availability. • https://jira.mariadb.org/browse/MDEV-28081 https://lists.debian.org/debian-lts-announce/2022/09/msg00023.html https://security.netapp.com/advisory/ntap-20220526-0006 https://access.redhat.com/security/cve/CVE-2022-27445 https://bugzilla.redhat.com/show_bug.cgi?id=2075691 •
CVE-2022-27444 – mariadb: crash when using HAVING with NOT EXIST predicate in an equality
https://notcve.org/view.php?id=CVE-2022-27444
MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_subselect.cc. Se ha detectado que MariaDB Server versiones v10.9 y anteriores, contienen un fallo de segmentación por medio del componente sql/item_subselect.cc A flaw was found in the MariaDB Server. It contains a segmentation fault via the component, sql/item_subselect.cc, affecting availability. • https://jira.mariadb.org/browse/MDEV-28080 https://security.netapp.com/advisory/ntap-20220526-0006 https://access.redhat.com/security/cve/CVE-2022-27444 https://bugzilla.redhat.com/show_bug.cgi?id=2075696 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •