git: 743222a92456 - main - security/vuxml: Document MariaDB vulnerability
- Go to: [ bottom of page ] [ top of archives ] [ this month ]
Date: Sun, 26 Nov 2023 17:28:40 UTC
The branch main has been updated by brnrd: URL: https://cgit.FreeBSD.org/ports/commit/?id=743222a924569d7ed3d5f74cf2dda3fd326fe143 commit 743222a924569d7ed3d5f74cf2dda3fd326fe143 Author: Bernard Spil <brnrd@FreeBSD.org> AuthorDate: 2023-11-26 17:28:38 +0000 Commit: Bernard Spil <brnrd@FreeBSD.org> CommitDate: 2023-11-26 17:28:38 +0000 security/vuxml: Document MariaDB vulnerability --- security/vuxml/vuln/2023.xml | 40 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 40 insertions(+) diff --git a/security/vuxml/vuln/2023.xml b/security/vuxml/vuln/2023.xml index f4c94f3b7c4e..3fba51d4c6e7 100644 --- a/security/vuxml/vuln/2023.xml +++ b/security/vuxml/vuln/2023.xml @@ -1,3 +1,43 @@ + <vuln vid="388e6557-8c80-11ee-9ee3-84a93843eb75"> + <topic>MariaDB -- Denial-of-Service vulnerability</topic> + <affects> + <package> + <name>mariadb105-server</name> + <range><lt>10.5.23</lt></range> + </package> + <package> + <name>mariadb106-server</name> + <range><lt>10.6.16</lt></range> + </package> + <package> + <name>mariadb1011-server</name> + <range><lt>10.11.6</lt></range> + </package> + </affects> + <description> + <body xmlns="http://www.w3.org/1999/xhtml"> + <p>The MariaDB project reports:</p> + <blockquote cite="https://mariadb.com/kb/en/mariadb-10-11-6-release-notes/"> + <p>Easily exploitable vulnerability allows high privileged attacker + with network access via multiple protocols to compromise MySQL + Server. Successful attacks of this vulnerability can result in + unauthorized ability to cause a hang or frequently repeatable crash + (complete DOS) of MySQL Server.</p> + </blockquote> + </body> + </description> + <references> + <cvename>CVE-2023-22084</cvename> + <url>https://mariadb.com/kb/en/mariadb-10-11-6-release-notes/</url> + <url>https://mariadb.com/kb/en/mariadb-10-6-16-release-notes/</url> + <url>https://mariadb.com/kb/en/mariadb-10-5-23-release-notes/</url> + </references> + <dates> + <discovery>2023-11-13</discovery> + <entry>2023-11-26</entry> + </dates> + </vuln> + <vuln vid="a62c0c50-8aa0-11ee-ac0d-00e0670f2660"> <topic>strongSwan -- vulnerability in charon-tkm</topic> <affects>