CVE-2023-38502

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-38502
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-38502.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-38502
Related
  • GHSA-w23f-r2fm-27hf
Published
2023-07-25T22:15:10Z
Modified
2025-01-14T11:51:42.508894Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

TDengine is an open source, time-series database optimized for Internet of Things devices. Prior to version 3.0.7.1, TDengine DataBase crashes on UDF nested query. This issue affects TDengine Databases which let users connect and run arbitrary queries. Version 3.0.7.1 has a patch for this issue.

References

Affected packages

Git / github.com/taosdata/tdengine

Affected ranges

Type
GIT
Repo
https://github.com/taosdata/tdengine
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

TDB-ver-0.*

TDB-ver-0.7

TDB-ver0.*

TDB-ver0.8

Other

autoaddcol_07150626
autoaddcol_07161108
autoaddcol_07161651
autoaddcol_0718_2208
autoaddcol_0719_1122
autoaddcol_0720_1434

release/ver-2.*

release/ver-2.1.2.0

ver-1.*

ver-1.6.1.7
ver-1.6.2.0
ver-1.6.2.1
ver-1.6.2.2
ver-1.6.3.0
ver-1.6.3.1
ver-1.6.4.0
ver-1.6.4.1
ver-1.6.4.2
ver-1.6.4.3
ver-1.6.4.4
ver-1.6.4.5
ver-1.6.4.6
ver-1.6.5.0-beta
ver-1.6.5.1-beta
ver-1.6.5.2-beta
ver-1.6.5.3-beta
ver-1.6.5.3.aidong-beta
ver-1.6.6.0-beta

ver-2.*

ver-2.0.0.0
ver-2.0.0.1
ver-2.0.0.2
ver-2.0.0.3
ver-2.0.0.4
ver-2.0.1.0
ver-2.0.1.1
ver-2.0.1.1-ningsi
ver-2.0.1.9
ver-2.0.10.0
ver-2.0.11.0
ver-2.0.12.0
ver-2.0.13.0
ver-2.0.14.0
ver-2.0.16.0
ver-2.0.17.0
ver-2.0.18.0
ver-2.0.19.0
ver-2.0.2.0
ver-2.0.2.1
ver-2.0.2.2
ver-2.0.2.2-beta
ver-2.0.20.10
ver-2.0.20.11
ver-2.0.20.12
ver-2.0.20.13
ver-2.0.20.9
ver-2.0.3.0
ver-2.0.3.1
ver-2.0.4.0
ver-2.0.5.0
ver-2.0.5.2
ver-2.0.6.0
ver-2.0.8.0
ver-2.0.8.2
ver-2.0.9.0
ver-2.1.0
ver-2.1.3.0
ver-2.1.4.1
ver-2.1.5.0
ver-2.1.6.0
ver-2.1.7.1
ver-2.1.7.2

ver-3.*

ver-3.0.0.0
ver-3.0.0.1
ver-3.0.0.2
ver-3.0.1.0
ver-3.0.1.1
ver-3.0.1.2
ver-3.0.1.3
ver-3.0.1.4
ver-3.0.1.6
ver-3.0.1.7
ver-3.0.1.8
ver-3.0.2.0
ver-3.0.2.1
ver-3.0.2.2
ver-3.0.2.6
ver-3.0.3.0
ver-3.0.4.0
ver-3.0.4.2