CVE-2022-47015

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
20/01/2023
Last modified:
03/04/2025

Description

MariaDB Server before 10.3.34 thru 10.9.3 is vulnerable to Denial of Service. It is possible for function spider_db_mbase::print_warnings to dereference a null pointer.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* 10.3.0 (including) 10.3.39 (excluding)
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* 10.4.0 (including) 10.4.29 (excluding)
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* 10.5.0 (including) 10.5.20 (excluding)
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* 10.6.0 (including) 10.6.13 (excluding)
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* 10.8.0 (including) 10.8.8 (excluding)
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* 10.9.0 (including) 10.9.6 (excluding)
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* 10.10.0 (including) 10.10.4 (excluding)
cpe:2.3:a:mariadb:mariadb:*:*:*:*:*:*:*:* 10.11.0 (including) 10.11.3 (excluding)