Lucene search

K
osvGoogleOSV:ASB-A-192606047
HistoryNov 01, 2021 - 12:00 a.m.

Malicious SQL statement causes a read-only use-after-free memory error.

2021-11-0100:00:00
Google
osv.dev
14
malicious sql
use-after-free
memory error
information disclosure
user interaction
local privilege
select.c
resetaccumulator
software

AI Score

6.8

Confidence

High

EPSS

0.009

Percentile

82.9%

In resetAccumulator of select.c, there is a possible use after free. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.