USN-4603-1
Dashboard / Vulnerabilities / USN-4603-1
USN-4603-1
Summary: mariadb-10.1, mariadb-10.3 vulnerabilities
Details: It was discovered that MariaDB didn't properly validate the content of a packet received from a server. A remote attacker could use this vulnerability to sent a specialy crafted file to cause a denial of service. (CVE-2020-13249) It was discovered that MariaDB has other security issues. An attacker can cause a hang or frequently repeatable crash (denial of service). (CVE-2020-15180, CVE-2020-2752, CVE-2020-2760, CVE-2020-2812, CVE-2020-2814) In addition to security fixes, the updated packages contain bug fixes, new features, and possibly incompatible changes.
References: https://ubuntu.com/security/notices/USN-4603-1, https://ubuntu.com/security/CVE-2020-2752, https://ubuntu.com/security/CVE-2020-2760, https://ubuntu.com/security/CVE-2020-2812, https://ubuntu.com/security/CVE-2020-2814, https://ubuntu.com/security/CVE-2020-13249, https://ubuntu.com/security/CVE-2020-15180
Affected packages
Package
Name: mariadb-10.1
Purl: pkg:deb/ubuntu/mariadb-10.1@1:10.1.47-0ubuntu0.18.04.1?arch=source&distro=bionic
Affected ranges
Type: ECOSYSTEM
Events:
