From debf01a07bbde16619e134108d352eb124b1246e Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Sun, 3 Jul 2022 23:05:59 +0200 Subject: Add new set of MariaDB related issues --- data/CVE/list | 54 ++++++++++++++++++++++++++++++++++++++++++++---------- 1 file changed, 44 insertions(+), 10 deletions(-) diff --git a/data/CVE/list b/data/CVE/list index 94a63606b6..cb817af162 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -7272,27 +7272,61 @@ CVE-2022-32093 (Hospital Management System v1.0 was discovered to contain a SQL CVE-2022-32092 (D-Link DIR-645 v1.03 was discovered to contain a command injection vul ...) NOT-FOR-US: D-Link CVE-2022-32091 (MariaDB v10.7 was discovered to contain an use-after-poison in in __in ...) - TODO: check + - mariadb-10.6 + - mariadb-10.5 + - mariadb-10.3 + NOTE: https://jira.mariadb.org/browse/MDEV-26431 CVE-2022-32090 RESERVED CVE-2022-32089 (MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault ...) - TODO: check + - mariadb-10.6 + - mariadb-10.5 + - mariadb-10.3 + NOTE: https://jira.mariadb.org/browse/MDEV-26410 CVE-2022-32088 (MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault ...) - TODO: check + - mariadb-10.6 + - mariadb-10.5 + - mariadb-10.3 + NOTE: https://jira.mariadb.org/browse/MDEV-26419 CVE-2022-32087 (MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault ...) - TODO: check + - mariadb-10.6 1:10.6.8-1 + - mariadb-10.5 + - mariadb-10.3 + NOTE: https://jira.mariadb.org/browse/MDEV-26437 + NOTE: Fixed in: 10.3.35, 10.4.25, 10.5.16, 10.6.8, 10.7.4 CVE-2022-32086 (MariaDB v10.4 to v10.8 was discovered to contain a segmentation fault ...) - TODO: check + - mariadb-10.6 1:10.6.8-1 + - mariadb-10.5 + - mariadb-10.3 + NOTE: https://jira.mariadb.org/browse/MDEV-26412 + NOTE: Fixed in: 10.4.25, 10.5.16, 10.6.8, 10.7.4, 10.8.3 CVE-2022-32085 (MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault ...) - TODO: check + - mariadb-10.6 1:10.6.8-1 + - mariadb-10.5 + - mariadb-10.3 + NOTE: https://jira.mariadb.org/browse/MDEV-26407 + NOTE: Fixed in: 10.3.35, 10.4.25, 10.5.16, 10.6.8, 10.7.4 CVE-2022-32084 (MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault ...) - TODO: check + - mariadb-10.6 + - mariadb-10.5 + - mariadb-10.3 + NOTE: https://jira.mariadb.org/browse/MDEV-26427 CVE-2022-32083 (MariaDB v10.2 to v10.6.1 was discovered to contain a segmentation faul ...) - TODO: check + - mariadb-10.6 1:10.6.8-1 + - mariadb-10.5 + - mariadb-10.3 + NOTE: https://jira.mariadb.org/browse/MDEV-26047 + NOTE: Fixed in: 10.2.44, 10.3.35, 10.4.25, 10.5.16, 10.6.8, 10.7.4, 10.8.3 CVE-2022-32082 (MariaDB v10.5 to v10.7 was discovered to contain an assertion failure ...) - TODO: check + - mariadb-10.6 + - mariadb-10.5 + - mariadb-10.3 + NOTE: https://jira.mariadb.org/browse/MDEV-26433 CVE-2022-32081 (MariaDB v10.4 to v10.7 was discovered to contain an use-after-poison i ...) - TODO: check + - mariadb-10.6 + - mariadb-10.5 + - mariadb-10.3 + NOTE: https://jira.mariadb.org/browse/MDEV-26420 CVE-2022-32080 RESERVED CVE-2022-32079 -- cgit v1.2.3