MariaDB Server v10.7 and below was discovered to contain a global buffer overflow in the component decimalbinsize, which is exploited via specially crafted SQL statements.
{ "binaries": [ { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "libmariadbd-dev" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "libmariadbd18" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-client" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-client-10.0" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-client-core-10.0" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-common" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-plugin-connect" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-plugin-mroonga" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-plugin-oqgraph" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-plugin-spider" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-plugin-tokudb" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-server" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-server-10.0" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-server-core-10.0" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-test" }, { "binary_version": "10.0.38-0ubuntu0.16.04.1", "binary_name": "mariadb-test-data" } ] }
{ "binaries": [ { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "libmariadbclient-dev" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "libmariadbclient-dev-compat" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "libmariadbclient18" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "libmariadbd-dev" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "libmariadbd18" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-client" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-client-10.1" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-client-core-10.1" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-common" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-plugin-connect" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-plugin-cracklib-password-check" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-plugin-gssapi-client" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-plugin-gssapi-server" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-plugin-mroonga" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-plugin-oqgraph" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-plugin-spider" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-plugin-tokudb" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-server" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-server-10.1" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-server-core-10.1" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-test" }, { "binary_version": "1:10.1.48-0ubuntu0.18.04.1", "binary_name": "mariadb-test-data" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "libmariadb-dev" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "libmariadb-dev-compat" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "libmariadb3" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "libmariadbclient-dev" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "libmariadbd-dev" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "libmariadbd19" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-backup" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-client" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-client-10.3" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-client-core-10.3" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-common" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-plugin-connect" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-plugin-cracklib-password-check" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-plugin-gssapi-client" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-plugin-gssapi-server" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-plugin-mroonga" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-plugin-oqgraph" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-plugin-rocksdb" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-plugin-spider" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-plugin-tokudb" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-server" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-server-10.3" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-server-core-10.3" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-test" }, { "binary_version": "1:10.3.37-0ubuntu0.20.04.1", "binary_name": "mariadb-test-data" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "libmariadb-dev" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "libmariadb-dev-compat" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "libmariadb3" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "libmariadbd-dev" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "libmariadbd19" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-backup" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-client" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-client-10.6" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-client-core-10.6" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-common" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-plugin-connect" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-plugin-cracklib-password-check" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-plugin-gssapi-client" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-plugin-gssapi-server" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-plugin-mroonga" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-plugin-oqgraph" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-plugin-rocksdb" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-plugin-s3" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-plugin-spider" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-server" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-server-10.6" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-server-core-10.6" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-test" }, { "binary_version": "1:10.6.11-0ubuntu0.22.04.1", "binary_name": "mariadb-test-data" } ] }