CVE-2021-46669
Summary
| CVE | CVE-2021-46669 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-02-01 02:15:00 UTC |
| Updated | 2023-11-07 03:40:00 UTC |
| Description | MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 36 Update: mariadb-10.5.16-1.fc36 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| Security Vulnerabilities Fixed in MariaDB - MariaDB Knowledge Base |
CONFIRM |
mariadb.com |
|
| [SECURITY] Fedora 35 Update: mariadb-10.5.16-1.fc35 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] Fedora 36 Update: mariadb-10.5.16-1.fc36 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| January 2022 MariaDB Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| [SECURITY] Fedora 35 Update: mariadb-10.5.16-1.fc35 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [MDEV-25638] Assertion `!result' failed in convert_const_to_int - Jira |
MISC |
jira.mariadb.org |
|
| [SECURITY] [DLA 3114-1] mariadb-10.3 security update |
MLIST |
lists.debian.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160019 Oracle Enterprise Linux Security Update for mariadb:10.5 (ELSA-2022-5826)
- 160037 Oracle Enterprise Linux Security Update for galera, mariadb, and mysql-selinux (ELSA-2022-5948)
- 160096 Oracle Enterprise Linux Security Update for mariadb:10.3 (ELSA-2022-6443)
- 181097 Debian Security Update for mariadb-10.3 (DLA 3114-1)
- 181343 Debian Security Update for mariadb-10.5 (CVE-2021-46669)
- 199043 Ubuntu Security Notification for MariaDB Vulnerabilities (USN-5739-1)
- 240565 Red Hat Update for rh-mariadb105-galera and rh-mariadb105-mariadb (RHSA-2022:5759)
- 240586 Red Hat Update for mariadb:10.5 security (RHSA-2022:5826)
- 240596 Red Hat Update for galera, mariadb, and mysql-selinux security (RHSA-2022:5948)
- 240645 Red Hat Update for rh-mariadb103-galera and rh-mariadb103-mariadb (RHSA-2022:6306)
- 240665 Red Hat Update for mariadb:10.3 (RHSA-2022:6443)
- 282797 Fedora Security Update for mariadb (FEDORA-2022-e6dc7ed871)
- 282798 Fedora Security Update for mariadb (FEDORA-2022-25dcba7104)
- 354336 Amazon Linux Security Advisory for mariadb105 : ALAS2022-2022-096
- 354476 Amazon Linux Security Advisory for mariadb105 : ALAS2022-2022-182
- 355152 Amazon Linux Security Advisory for mariadb105 : ALAS2023-2023-037
- 356265 Amazon Linux Security Advisory for mariadb : ALASMARIADB10.5-2023-003
- 377368 Alibaba Cloud Linux Security Update for mariadb:10.5 (ALINUX3-SA-2022:0151)
- 690871 Free Berkeley Software Distribution (FreeBSD) Security Update for mariadb (04fecc47-dad2-11ec-8fbd-d4c9ef517024)
- 752243 SUSE Enterprise Linux Security Update for mariadb (SUSE-SU-2022:2107-1)
- 752258 SUSE Enterprise Linux Security Update for mariadb (SUSE-SU-2022:2160-1)
- 752278 SUSE Enterprise Linux Security Update for mariadb (SUSE-SU-2022:2189-1)
- 753083 SUSE Enterprise Linux Security Update for mariadb (SUSE-SU-2022:2003-1)
- 753364 SUSE Enterprise Linux Security Update for mariadb (SUSE-SU-2022:2561-1)
- 900636 Common Base Linux Mariner (CBL-Mariner) Security Update for mariadb (8404)
- 901205 Common Base Linux Mariner (CBL-Mariner) Security Update for mariadb (8413-1)
- 902232 Common Base Linux Mariner (CBL-Mariner) Security Update for mariadb (8404-1)
- 940606 AlmaLinux Security Update for mariadb:10.5 (ALSA-2022:5826)
- 940632 AlmaLinux Security Update for galera, (ALSA-2022:5948)
- 940668 AlmaLinux Security Update for mariadb:10.3 (ALSA-2022:6443)
- 960383 Rocky Linux Security Update for mariadb:10.5 (RLSA-2022:5826)
- 960482 Rocky Linux Security Update for galera, (RLSA-2022:5948)