Lack of data validation - Type confusion In mariadb
Description
MariaDB Server 10.4 through 10.5., 10.6 through 10.6., 10.7 through 10.11., 11.0 through 11.0., and 11.1 through 11.4.* crashes in Item_direct_view_ref::derived_field_transformer_for_where.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 14 | 1:11.8.2-1 | ||
debian 11 | 1:10.5.28-0+deb11u2 | ||
debian 12 | 1:10.11.13-0+deb12u1 | ||
debian 13 | 1:11.8.2-1 | ||
rpm rhel9.6 | 3:10.11.15-1.module+el9.6.0+23803+16eaad56 | ||
rpm rhel10 | 3:10.11.15-1.el10_1 | ||
rpm rhel9 | 0:26.4.22-1.el9_6 | ||
rpm rhel8 | 3:10.11.15-1.module+el8.10.0+24010+d874728a | ||
rpm rhel9 | 3:10.5.29-2.el9_6 | ||
rpm rhel9.4 | 3:10.11.15-1.module+el9.4.0+23801+22792e5c |
1-10 of 11
10
Aliases
1. 2. 3. 4. 5.