Lucene search

K
vulnrichmentMitreVULNRICHMENT:CVE-2022-31621
HistoryMay 25, 2022 - 12:00 a.m.

CVE-2022-31621

2022-05-2500:00:00
mitre
github.com
7
mariadb
denial of service
improper locking

AI Score

5.3

Confidence

High

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_xbstream.cc, when an error occurs (stream_ctxt->dest_file == NULL) while executing the method xbstream_open, the held lock is not released correctly, which allows local users to trigger a denial of service due to the deadlock. Note: The vendor argues this is just an improper locking bug and not a vulnerability with adverse effects.

AI Score

5.3

Confidence

High

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial