MariaDB Server before 10.7 is vulnerable to Denial of Service. While executing the plugin/serveraudit/serveraudit.c method logstatementex, the held lock lock_bigbuffer is not released correctly, which allows local users to trigger a denial of service due to the deadlock.
{ "binaries": [ { "binary_name": "libmariadbd-dev", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "libmariadbd18", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-client", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-client-10.0", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-client-core-10.0", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-common", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-plugin-connect", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-plugin-mroonga", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-plugin-oqgraph", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-plugin-spider", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-plugin-tokudb", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-server", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-server-10.0", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-server-core-10.0", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-test", "binary_version": "10.0.38-0ubuntu0.16.04.1" }, { "binary_name": "mariadb-test-data", "binary_version": "10.0.38-0ubuntu0.16.04.1" } ] }
{ "binaries": [ { "binary_name": "libmariadbclient-dev", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "libmariadbclient-dev-compat", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "libmariadbclient18", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "libmariadbd-dev", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "libmariadbd18", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-client", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-client-10.1", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-client-core-10.1", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-common", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-plugin-connect", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-plugin-cracklib-password-check", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-plugin-gssapi-client", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-plugin-gssapi-server", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-plugin-mroonga", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-plugin-oqgraph", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-plugin-spider", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-plugin-tokudb", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-server", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-server-10.1", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-server-core-10.1", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-test", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" }, { "binary_name": "mariadb-test-data", "binary_version": "1:10.1.48-0ubuntu0.18.04.1" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libmariadb-dev", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "libmariadb-dev-compat", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "libmariadb3", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "libmariadbclient-dev", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "libmariadbd-dev", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "libmariadbd19", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-backup", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-client", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-client-10.3", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-client-core-10.3", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-common", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-plugin-connect", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-plugin-cracklib-password-check", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-plugin-gssapi-client", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-plugin-gssapi-server", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-plugin-mroonga", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-plugin-oqgraph", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-plugin-rocksdb", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-plugin-spider", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-plugin-tokudb", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-server", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-server-10.3", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-server-core-10.3", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-test", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" }, { "binary_name": "mariadb-test-data", "binary_version": "1:10.3.32-0ubuntu0.20.04.1" } ] }