Red Hat Security Advisory: galera, mariadb, and mysql-selinux security, bug fix, and enhancement update
🔗 CVE IDs covered (42)
📋 Description
CVE-2021-46659 — mariadb: Crash executing query with VIEW, aggregate and subquery CVE-2021-46661 — mariadb: MariaDB allows an application crash in find_field_in_tables and find_order_in_list via an unused common table expression (CTE) CVE-2021-46663 — mariadb: MariaDB through 10.5.13 allows a ha_maria::extra application crash via certain SELECT statements CVE-2021-46664 — mariadb: MariaDB through 10.5.9 allows an application crash in sub_select_postjoin_aggr for a NULL value of aggr CVE-2021-46665 — mariadb: MariaDB through 10.5.9 allows a sql_parse.cc application crash because of incorrect used_tables expectations CVE-2021-46668 — mariadb: MariaDB through 10.5.9 allows an application crash via certain long SELECT DISTINCT statements CVE-2021-46669 — mariadb: MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used CVE-2022-21595 — mysql: C API unspecified vulnerability (CPU Oct 2022) CVE-2022-24048 — mariadb: lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer CVE-2022-24050 — mariadb: lack of validating the existence of an object prior to performing operations on the object CVE-2022-24051 — mariadb: lack of proper validation of a user-supplied string before using it as a format specifier CVE-2022-24052 — mariadb: CONNECT storage engine heap-based buffer overflow CVE-2022-27376 — mariadb: assertion failure in Item_args::walk_arg CVE-2022-27377 — mariadb: use-after-poison when complex conversion is involved in blob CVE-2022-27378 — mariadb: server crash in create_tmp_table::finalize CVE-2022-27379 — mariadb: server crash in component arg_comparator::compare_real_fixed CVE-2022-27380 — mariadb: server crash at my_decimal::operator= CVE-2022-27381 — mariadb: server crash at Field::set_default via specially crafted SQL statements CVE-2022-27382 — mariadb: assertion failure via component Item_field::used_tables/update_depend_map_for_order CVE-2022-27383 — mariadb: use-after-poison in my_strcasecmp_8bit() of ctype-simple.c CVE-2022-27384 — mariadb: crash via component Item_subselect::init_expr_cache_tracker CVE-2022-27386 — mariadb: server crashes in query_arena::set_query_arena upon SELECT from view CVE-2022-27387 — mariadb: assertion failures in decimal_bin_size CVE-2022-27444 — mariadb: crash when using HAVING with NOT EXIST predicate in an equality CVE-2022-27445 — mariadb: assertion failure in compare_order_elements CVE-2022-27446 — mariadb: crash when using HAVING with IS NULL predicate in an equality CVE-2022-27447 — mariadb: use-after-poison in Binary_string::free_buffer CVE-2022-27448 — mariadb: crash in multi-update and implicit grouping CVE-2022-27449 — mariadb: assertion failure in sql/item_func.cc CVE-2022-27451 — mariadb: crash via window function in expression in ORDER BY CVE-2022-27452 — mariadb: assertion failure in sql/item_cmpfunc.cc CVE-2022-27455 — mariadb: use-after-free when WHERE has subquery with an outer reference in HAVING CVE-2022-27456 — mariadb: assertion failure in VDec::VDec at /sql/sql_type.cc CVE-2022-27457 — mariadb: incorrect key in "dup value" error after long unique CVE-2022-27458 — mariadb: use-after-poison in Binary_string::free_buffer CVE-2022-31622 — mariadb: improper locking due to the unreleased lock in extra/mariabackup/ds_compress.cc CVE-2022-31623 — mariadb: improper locking due to the unreleased lock in extra/mariabackup/ds_compress.cc CVE-2022-32083 — mariadb: server crash at Item_subselect::init_expr_cache_tracker CVE-2022-32085 — mariadb: server crash in Item_func_in::cleanup/Item::cleanup_processor CVE-2022-32086 — mariadb: server crash in Item_field::fix_outer_field for INSERT SELECT CVE-2022-32087 — mariadb: server crash in Item_args::walk_args CVE-2022-32088 — mariadb: segmentation fault in Exec_time_tracker::get_loops/Filesort_tracker::report_use/filesort
🔗 References (43)
- selfhttps://access.redhat.com/errata/RHSA-2022:5948
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2049302
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2050017
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2050022
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2050024
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2050026
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2050032
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2050034
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2068211
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2068233
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2068234
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2069833
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2074817
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2074947
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2074949
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2074951
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2074966
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2074981
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2074987
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2074996
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2074999
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075005
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075006
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075691
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075692
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075693
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075694
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075695
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075696
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075697
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075699
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075700
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2075701
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2076144
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2076145
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2092354
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2092360
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2096271
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2096274
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2096276
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2096277
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_5948.json