"-Synchronized-Data."

This commit is contained in:
CVE Team 2024-05-02 23:00:34 +00:00
parent 0081b37f7c
commit d3f92cbab4
No known key found for this signature in database
GPG Key ID: BC5FD8F2443B23B7
6 changed files with 99 additions and 3 deletions

View File

@ -34,7 +34,7 @@
"description_data": [
{
"lang": "eng",
"value": "MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_xbstream.cc, when an error occurs (stream_ctxt->dest_file == NULL) while executing the method xbstream_open, the held lock is not released correctly, which allows local users to trigger a denial of service due to the deadlock."
"value": "** DISPUTED ** MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_xbstream.cc, when an error occurs (stream_ctxt->dest_file == NULL) while executing the method xbstream_open, the held lock is not released correctly, which allows local users to trigger a denial of service due to the deadlock. Note: The vendor argues this is just an improper locking bug and not a vulnerability with adverse effects."
}
]
},
@ -66,6 +66,16 @@
"refsource": "CONFIRM",
"name": "https://security.netapp.com/advisory/ntap-20220707-0006/",
"url": "https://security.netapp.com/advisory/ntap-20220707-0006/"
},
{
"refsource": "MISC",
"name": "https://jira.mariadb.org/browse/MDEV-26574",
"url": "https://jira.mariadb.org/browse/MDEV-26574"
},
{
"refsource": "MISC",
"name": "https://jira.mariadb.org/browse/MDEV-26561",
"url": "https://jira.mariadb.org/browse/MDEV-26561"
}
]
}

View File

@ -34,7 +34,7 @@
"description_data": [
{
"lang": "eng",
"value": "MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs (pthread_create returns a nonzero value) while executing the method create_worker_threads, the held lock is not released correctly, which allows local users to trigger a denial of service due to the deadlock."
"value": "** DISPUTED ** MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs (pthread_create returns a nonzero value) while executing the method create_worker_threads, the held lock is not released correctly, which allows local users to trigger a denial of service due to the deadlock. Note: The vendor argues this is just an improper locking bug and not a vulnerability with adverse effects."
}
]
},
@ -66,6 +66,16 @@
"refsource": "CONFIRM",
"name": "https://security.netapp.com/advisory/ntap-20220707-0006/",
"url": "https://security.netapp.com/advisory/ntap-20220707-0006/"
},
{
"refsource": "MISC",
"name": "https://jira.mariadb.org/browse/MDEV-26574",
"url": "https://jira.mariadb.org/browse/MDEV-26574"
},
{
"refsource": "MISC",
"name": "https://jira.mariadb.org/browse/MDEV-26561",
"url": "https://jira.mariadb.org/browse/MDEV-26561"
}
]
}

View File

@ -34,7 +34,7 @@
"description_data": [
{
"lang": "eng",
"value": "MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs (i.e., going to the err label) while executing the method create_worker_threads, the held lock thd->ctrl_mutex is not released correctly, which allows local users to trigger a denial of service due to the deadlock."
"value": "** DISPUTED ** MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs (i.e., going to the err label) while executing the method create_worker_threads, the held lock thd->ctrl_mutex is not released correctly, which allows local users to trigger a denial of service due to the deadlock. Note: The vendor argues this is just an improper locking bug and not a vulnerability with adverse effects."
}
]
},
@ -66,6 +66,16 @@
"refsource": "CONFIRM",
"name": "https://security.netapp.com/advisory/ntap-20220707-0006/",
"url": "https://security.netapp.com/advisory/ntap-20220707-0006/"
},
{
"refsource": "MISC",
"name": "https://jira.mariadb.org/browse/MDEV-26574",
"url": "https://jira.mariadb.org/browse/MDEV-26574"
},
{
"refsource": "MISC",
"name": "https://jira.mariadb.org/browse/MDEV-26561",
"url": "https://jira.mariadb.org/browse/MDEV-26561"
}
]
}

View File

@ -74,6 +74,36 @@
"url": "https://www.cve.org/CVERecord?id=CVE-2024-4140",
"refsource": "MISC",
"name": "https://www.cve.org/CVERecord?id=CVE-2024-4140"
},
{
"url": "https://github.com/rjbs/Email-MIME/commit/3a12edd119e493156a5a05e45dd50f4e36b702e8",
"refsource": "MISC",
"name": "https://github.com/rjbs/Email-MIME/commit/3a12edd119e493156a5a05e45dd50f4e36b702e8"
},
{
"url": "https://github.com/rjbs/Email-MIME/commit/7e96ecfa1da44914a407f82ae98ba817bba08f2d",
"refsource": "MISC",
"name": "https://github.com/rjbs/Email-MIME/commit/7e96ecfa1da44914a407f82ae98ba817bba08f2d"
},
{
"url": "https://github.com/rjbs/Email-MIME/commit/02bf3e26812c8f38a86a33c168571f9783365df2",
"refsource": "MISC",
"name": "https://github.com/rjbs/Email-MIME/commit/02bf3e26812c8f38a86a33c168571f9783365df2"
},
{
"url": "https://github.com/rjbs/Email-MIME/commit/fc0fededd24a71ccc51bcd8b1e486385d09aae63",
"refsource": "MISC",
"name": "https://github.com/rjbs/Email-MIME/commit/fc0fededd24a71ccc51bcd8b1e486385d09aae63"
},
{
"url": "https://github.com/rjbs/Email-MIME/commit/b2cb62f19e12580dd235f79e2546d44a6bec54d1",
"refsource": "MISC",
"name": "https://github.com/rjbs/Email-MIME/commit/b2cb62f19e12580dd235f79e2546d44a6bec54d1"
},
{
"url": "https://github.com/rjbs/Email-MIME/commit/3dcf096eeccb8e4dd42738de676c8f4a5aa7a531",
"refsource": "MISC",
"name": "https://github.com/rjbs/Email-MIME/commit/3dcf096eeccb8e4dd42738de676c8f4a5aa7a531"
}
]
},

View File

@ -0,0 +1,18 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2024-4451",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
}
]
}
}

View File

@ -0,0 +1,18 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2024-4452",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
}
]
}
}