UBUNTU-CVE-2021-46322

Source
https://ubuntu.com/security/CVE-2021-46322
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2021/UBUNTU-CVE-2021-46322.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2021-46322
Related
Published
2022-01-20T22:15:00Z
Modified
2024-11-20T12:20:26Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

Duktape v2.99.99 was discovered to contain a SEGV vulnerability via the component dukpushtval in duktape/dukapistack.c.

References

Affected packages

Ubuntu:Pro:14.04:LTS / mysql-5.5

Package

Name
mysql-5.5
Purl
pkg:deb/ubuntu/mysql-5.5?arch=src?distro=trusty/esm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*

5.5.32-0ubuntu7
5.5.34-0ubuntu1
5.5.34-0ubuntu2
5.5.35-0ubuntu1
5.5.35+dfsg-1ubuntu1
5.5.37-0ubuntu0.14.04.1
5.5.38-0ubuntu0.14.04.1
5.5.40-0ubuntu0.14.04.1
5.5.41-0ubuntu0.14.04.1
5.5.43-0ubuntu0.14.04.1
5.5.44-0ubuntu0.14.04.1
5.5.46-0ubuntu0.14.04.2
5.5.47-0ubuntu0.14.04.1
5.5.49-0ubuntu0.14.04.1
5.5.50-0ubuntu0.14.04.1
5.5.52-0ubuntu0.14.04.1
5.5.53-0ubuntu0.14.04.1
5.5.54-0ubuntu0.14.04.1
5.5.55-0ubuntu0.14.04.1
5.5.57-0ubuntu0.14.04.1
5.5.58-0ubuntu0.14.04.1
5.5.59-0ubuntu0.14.04.1
5.5.60-0ubuntu0.14.04.1
5.5.61-0ubuntu0.14.04.1
5.5.62-0ubuntu0.14.04.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:16.04:LTS / mariadb-10.0

Package

Name
mariadb-10.0
Purl
pkg:deb/ubuntu/mariadb-10.0?arch=src?distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

10.*

10.0.20-0ubuntu0.15.04.1
10.0.22-0ubuntu1
10.0.23-1
10.0.23-2
10.0.24-7
10.0.25-0ubuntu0.16.04.1
10.0.27-0ubuntu0.16.04.1
10.0.28-0ubuntu0.16.04.1
10.0.29-0ubuntu0.16.04.1
10.0.31-0ubuntu0.16.04.2
10.0.33-0ubuntu0.16.04.1
10.0.34-0ubuntu0.16.04.1
10.0.36-0ubuntu0.16.04.1
10.0.38-0ubuntu0.16.04.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:16.04:LTS / percona-server-5.6

Package

Name
percona-server-5.6
Purl
pkg:deb/ubuntu/percona-server-5.6?arch=src?distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*

5.6.22-rel71.0-0ubuntu2
5.6.22-rel71.0-0ubuntu4
5.6.22-rel71.0-0ubuntu4.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:16.04:LTS / percona-xtradb-cluster-5.6

Package

Name
percona-xtradb-cluster-5.6
Purl
pkg:deb/ubuntu/percona-xtradb-cluster-5.6?arch=src?distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*

5.6.21-25.8-0ubuntu2
5.6.21-25.8-0ubuntu3
5.6.21-25.8-0ubuntu3.1
5.6.21-25.8-0ubuntu3.2
5.6.34-26.19-0ubuntu0.16.04.1
5.6.34-26.19-0ubuntu0.16.04.2
5.6.37-26.21-0ubuntu0.16.04.1
5.6.37-26.21-0ubuntu0.16.04.2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:18.04:LTS / duktape

Package

Name
duktape
Purl
pkg:deb/ubuntu/duktape?arch=src?distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*

2.1.1-1
2.2.0-2
2.2.0-3

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:18.04:LTS / mariadb-10.1

Package

Name
mariadb-10.1
Purl
pkg:deb/ubuntu/mariadb-10.1?arch=src?distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

10.*

10.1.25-1

1:10.*

1:10.1.29-6
1:10.1.34-0ubuntu0.18.04.1
1:10.1.38-0ubuntu0.18.04.1
1:10.1.38-0ubuntu0.18.04.2
1:10.1.40-0ubuntu0.18.04.1
1:10.1.41-0ubuntu0.18.04.1
1:10.1.43-0ubuntu0.18.04.1
1:10.1.44-0ubuntu0.18.04.1
1:10.1.47-0ubuntu0.18.04.1
1:10.1.48-0ubuntu0.18.04.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:20.04:LTS / duktape

Package

Name
duktape
Purl
pkg:deb/ubuntu/duktape?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*

2.4.0-1
2.4.0-2
2.5.0-1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:20.04:LTS / mariadb-10.3

Package

Name
mariadb-10.3
Purl
pkg:deb/ubuntu/mariadb-10.3?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1:10.*

1:10.3.17-1
1:10.3.18-1
1:10.3.19-1
1:10.3.21-2
1:10.3.22-1
1:10.3.22-1ubuntu1
1:10.3.25-0ubuntu0.20.04.1
1:10.3.29-0ubuntu0.20.04.1
1:10.3.30-0ubuntu0.20.04.1
1:10.3.31-0ubuntu0.20.04.1
1:10.3.32-0ubuntu0.20.04.1
1:10.3.34-0ubuntu0.20.04.1
1:10.3.37-0ubuntu0.20.04.1
1:10.3.38-0ubuntu0.20.04.1
1:10.3.39-0ubuntu0.20.04.2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:22.04:LTS / duktape

Package

Name
duktape
Purl
pkg:deb/ubuntu/duktape?arch=src?distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.7.0-1

Affected versions

2.*

2.5.0-2
2.6.0-2

Ecosystem specific

{
    "availability": "No subscription required",
    "ubuntu_priority": "medium",
    "binaries": [
        {
            "binary_version": "2.7.0-1",
            "binary_name": "duktape"
        },
        {
            "binary_version": "2.7.0-1",
            "binary_name": "duktape-dbgsym"
        },
        {
            "binary_version": "2.7.0-1",
            "binary_name": "duktape-dev"
        },
        {
            "binary_version": "2.7.0-1",
            "binary_name": "libduktape207"
        },
        {
            "binary_version": "2.7.0-1",
            "binary_name": "libduktape207-dbgsym"
        }
    ]
}

Ubuntu:24.04:LTS / duktape

Package

Name
duktape
Purl
pkg:deb/ubuntu/duktape?arch=src?distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.7.0+tests-0ubuntu2

Ecosystem specific

{
    "availability": "No subscription required",
    "ubuntu_priority": "medium",
    "binaries": [
        {
            "binary_version": "2.7.0+tests-0ubuntu2",
            "binary_name": "duktape"
        },
        {
            "binary_version": "2.7.0+tests-0ubuntu2",
            "binary_name": "duktape-dbgsym"
        },
        {
            "binary_version": "2.7.0+tests-0ubuntu2",
            "binary_name": "duktape-dev"
        },
        {
            "binary_version": "2.7.0+tests-0ubuntu2",
            "binary_name": "libduktape207"
        },
        {
            "binary_version": "2.7.0+tests-0ubuntu2",
            "binary_name": "libduktape207-dbgsym"
        }
    ]
}