CVE-2021-46668
Summary
| CVE | CVE-2021-46668 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-02-01 02:15:00 UTC |
| Updated | 2023-11-07 03:40:00 UTC |
| Description | MariaDB through 10.5.9 allows an application crash via certain long SELECT DISTINCT statements that improperly interact with storage-engine resource limitations for temporary data structures. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 34 Update: mariadb-10.5.15-1.fc34 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 35 Update: mariadb-10.5.15-1.fc35 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] Fedora 36 Update: galera-26.4.11-1.fc36 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| Security Vulnerabilities Fixed in MariaDB - MariaDB Knowledge Base |
CONFIRM |
mariadb.com |
|
| [MDEV-25787] Bug report: crash on SELECT DISTINCT thousands_blob_fields - Jira |
MISC |
jira.mariadb.org |
|
| [SECURITY] Fedora 34 Update: mariadb-10.5.15-1.fc34 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| January 2022 MariaDB Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| [SECURITY] Fedora 35 Update: mariadb-10.5.15-1.fc35 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 36 Update: galera-26.4.11-1.fc36 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160019 Oracle Enterprise Linux Security Update for mariadb:10.5 (ELSA-2022-5826)
- 160037 Oracle Enterprise Linux Security Update for galera, mariadb, and mysql-selinux (ELSA-2022-5948)
- 160096 Oracle Enterprise Linux Security Update for mariadb:10.3 (ELSA-2022-6443)
- 180301 Debian Security Update for mariadb-10.5mariadb-10.3 (CVE-2021-46668)
- 198679 Ubuntu Security Notification for MariaDB Vulnerabilities (USN-5305-1)
- 240565 Red Hat Update for rh-mariadb105-galera and rh-mariadb105-mariadb (RHSA-2022:5759)
- 240586 Red Hat Update for mariadb:10.5 security (RHSA-2022:5826)
- 240596 Red Hat Update for galera, mariadb, and mysql-selinux security (RHSA-2022:5948)
- 240645 Red Hat Update for rh-mariadb103-galera and rh-mariadb103-mariadb (RHSA-2022:6306)
- 240665 Red Hat Update for mariadb:10.3 (RHSA-2022:6443)
- 282654 Fedora Security Update for galera (FEDORA-2022-03350936ee)
- 282655 Fedora Security Update for mariadb (FEDORA-2022-5cfe372ab7)
- 282722 Fedora Security Update for galera (FEDORA-2022-263f7cc483)
- 354437 Amazon Linux Security Advisory for mariadb105 : ALAS2022-2022-069
- 354476 Amazon Linux Security Advisory for mariadb105 : ALAS2022-2022-182
- 355152 Amazon Linux Security Advisory for mariadb105 : ALAS2023-2023-037
- 355322 Amazon Linux Security Advisory for mariadb : ALAS2-2023-2057
- 356265 Amazon Linux Security Advisory for mariadb : ALASMARIADB10.5-2023-003
- 377368 Alibaba Cloud Linux Security Update for mariadb:10.5 (ALINUX3-SA-2022:0151)
- 500389 Alpine Linux Security Update for mariadb
- 501433 Alpine Linux Security Update for mariadb
- 501971 Alpine Linux Security Update for mariadb
- 502457 Alpine Linux Security Update for mariadb
- 504147 Alpine Linux Security Update for mariadb
- 671573 EulerOS Security Update for mariadb (EulerOS-SA-2022-1543)
- 671693 EulerOS Security Update for mariadb (EulerOS-SA-2022-1746)
- 671866 EulerOS Security Update for mariadb (EulerOS-SA-2022-1939)
- 690796 Free Berkeley Software Distribution (FreeBSD) Security Update for mariadb (27bf9378-8ffd-11ec-8be6-d4c9ef517024)
- 751802 SUSE Enterprise Linux Security Update for mariadb (SUSE-SU-2022:0726-1)
- 751805 SUSE Enterprise Linux Security Update for mariadb (SUSE-SU-2022:0725-1)
- 751808 OpenSUSE Security Update for mariadb (openSUSE-SU-2022:0731-1)
- 751811 OpenSUSE Security Update for mariadb (openSUSE-SU-2022:0725-1)
- 751812 OpenSUSE Security Update for mariadb (openSUSE-SU-2022:0726-1)
- 751841 SUSE Enterprise Linux Security Update for mariadb (SUSE-SU-2022:0782-1)
- 753158 SUSE Enterprise Linux Security Update for mariadb (SUSE-SU-2022:0731-1)
- 753364 SUSE Enterprise Linux Security Update for mariadb (SUSE-SU-2022:2561-1)
- 900635 Common Base Linux Mariner (CBL-Mariner) Security Update for mariadb (8403)
- 901635 Common Base Linux Mariner (CBL-Mariner) Security Update for mariadb (8412-1)
- 940606 AlmaLinux Security Update for mariadb:10.5 (ALSA-2022:5826)
- 940632 AlmaLinux Security Update for galera, (ALSA-2022:5948)
- 940668 AlmaLinux Security Update for mariadb:10.3 (ALSA-2022:6443)
- 960383 Rocky Linux Security Update for mariadb:10.5 (RLSA-2022:5826)
- 960482 Rocky Linux Security Update for galera, (RLSA-2022:5948)