Lucene search

K
ubuntuUbuntuUSN-4250-2
HistoryFeb 06, 2020 - 12:00 a.m.

MariaDB vulnerability

2020-02-0600:00:00
ubuntu.com
68

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

CVSS3

5.9

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

6.9

Confidence

High

EPSS

0.009

Percentile

82.3%

Releases

  • Ubuntu 19.10
  • Ubuntu 18.04 ESM

Packages

  • mariadb-10.1 - MariaDB database
  • mariadb-10.3 - MariaDB database

Details

It was discovered that an unspecified vulnerability existed in the C API
component of MariaDB. An attacker could use this to cause a denial of
service for MariaDB clients.

MariaDB has been updated to 10.3.22 in Ubuntu 19.10 and 10.1.44 in
Ubuntu 18.04 LTS.

In addition to security fixes, the updated packages contain bug fixes,
new features, and possibly incompatible changes.

OSVersionArchitecturePackageVersionFilename
Ubuntu19.10noarchlibmariadb3< 1:10.3.22-0ubuntu0.19.10.1UNKNOWN
Ubuntu19.10noarchlibmariadb-dev< 1:10.3.22-0ubuntu0.19.10.1UNKNOWN
Ubuntu19.10noarchlibmariadb-dev-compat< 1:10.3.22-0ubuntu0.19.10.1UNKNOWN
Ubuntu19.10noarchlibmariadb-dev-dbgsym< 1:10.3.22-0ubuntu0.19.10.1UNKNOWN
Ubuntu19.10noarchlibmariadb3-dbgsym< 1:10.3.22-0ubuntu0.19.10.1UNKNOWN
Ubuntu19.10noarchlibmariadbclient-dev< 1:10.3.22-0ubuntu0.19.10.1UNKNOWN
Ubuntu19.10noarchlibmariadbd-dev< 1:10.3.22-0ubuntu0.19.10.1UNKNOWN
Ubuntu19.10noarchlibmariadbd19< 1:10.3.22-0ubuntu0.19.10.1UNKNOWN
Ubuntu19.10noarchlibmariadbd19-dbgsym< 1:10.3.22-0ubuntu0.19.10.1UNKNOWN
Ubuntu19.10noarchmariadb-backup< 1:10.3.22-0ubuntu0.19.10.1UNKNOWN
Rows per page:
1-10 of 801

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

CVSS3

5.9

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

6.9

Confidence

High

EPSS

0.009

Percentile

82.3%