CVE-2023-5157
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/09/2023
Last modified:
18/06/2024
Description
A vulnerability was found in MariaDB. An OpenVAS port scan on ports 3306 and 4567 allows a malicious remote client to cause a denial of service.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* | 10.3.36 (excluding) | |
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* | 10.4.0 (including) | 10.4.26 (excluding) |
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* | 10.5.0 (including) | 10.5.17 (excluding) |
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* | 10.6.0 (including) | 10.6.9 (excluding) |
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* | 10.7.0 (including) | 10.7.5 (excluding) |
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* | 10.8.0 (including) | 10.8.4 (excluding) |
cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* | ||
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:redhat:enterprise_linux_eus:8.6:*:*:*:*:*:*:* | ||
cpe:2.3:o:redhat:enterprise_linux_eus:8.8:*:*:*:*:*:*:* | ||
cpe:2.3:o:redhat:enterprise_linux_eus:9.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:redhat:enterprise_linux_eus:9.2:*:*:*:*:*:*:* | ||
cpe:2.3:o:redhat:enterprise_linux_for_arm_64:8.0_aarch64:*:*:*:*:*:*:* | ||
cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.0_aarch64:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://access.redhat.com/errata/RHSA-2023:5683
- https://access.redhat.com/errata/RHSA-2023:5684
- https://access.redhat.com/errata/RHSA-2023:6821
- https://access.redhat.com/errata/RHSA-2023:6822
- https://access.redhat.com/errata/RHSA-2023:6883
- https://access.redhat.com/errata/RHSA-2023:7633
- https://access.redhat.com/security/cve/CVE-2023-5157
- https://bugzilla.redhat.com/show_bug.cgi?id=2240246