An issue was discovered in MariaDB Server before 11.4.10, 11.5.x through 11.8.x before 11.8.6, and 12.x before 12.2.2. If the cachingsha2password authentication plugin is installed, and some user accounts are configured to use it, a large packet can crash the server because sha256cryptr uses alloca.
{
"binaries": [
{
"binary_name": "libmariadbd18",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-client",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-client-10.0",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-client-core-10.0",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-common",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-plugin-connect",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-plugin-mroonga",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-plugin-oqgraph",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-plugin-spider",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-plugin-tokudb",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-server",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-server-10.0",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-server-core-10.0",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-test",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
},
{
"binary_name": "mariadb-test-data",
"binary_version": "10.0.38-0ubuntu0.16.04.1"
}
]
}{
"binaries": [
{
"binary_name": "libmariadbclient-dev-compat",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "libmariadbclient18",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "libmariadbd18",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-client",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-client-10.1",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-client-core-10.1",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-common",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-plugin-connect",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-plugin-cracklib-password-check",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-plugin-gssapi-client",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-plugin-gssapi-server",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-plugin-mroonga",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-plugin-oqgraph",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-plugin-spider",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-plugin-tokudb",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-server",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-server-10.1",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-server-core-10.1",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-test",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
},
{
"binary_name": "mariadb-test-data",
"binary_version": "1:10.1.48-0ubuntu0.18.04.1"
}
]
}{
"binaries": [
{
"binary_name": "libmariadb-dev-compat",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "libmariadb3",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "libmariadbd19",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-backup",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-client",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-client-10.3",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-client-core-10.3",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-common",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-plugin-connect",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-plugin-cracklib-password-check",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-plugin-gssapi-client",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-plugin-gssapi-server",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-plugin-mroonga",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-plugin-oqgraph",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-plugin-rocksdb",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-plugin-spider",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-plugin-tokudb",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-server",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-server-10.3",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-server-core-10.3",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-test",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
},
{
"binary_name": "mariadb-test-data",
"binary_version": "1:10.3.39-0ubuntu0.20.04.2"
}
]
}{
"binaries": [
{
"binary_name": "libmariadb-dev-compat",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "libmariadb3",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "libmariadbd19",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-backup",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-client",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-client-10.6",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-client-core-10.6",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-common",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-plugin-connect",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-plugin-cracklib-password-check",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-plugin-gssapi-client",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-plugin-gssapi-server",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-plugin-mroonga",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-plugin-oqgraph",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-plugin-rocksdb",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-plugin-s3",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-plugin-spider",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-server",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-server-10.6",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-server-core-10.6",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-test",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
},
{
"binary_name": "mariadb-test-data",
"binary_version": "1:10.6.23-0ubuntu0.22.04.1"
}
]
}{
"binaries": [
{
"binary_name": "libmariadb-dev-compat",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "libmariadb3",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "libmariadbd19t64",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-backup",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-client",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-client-core",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-common",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-connect",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-cracklib-password-check",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-gssapi-client",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-gssapi-server",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-hashicorp-key-management",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-mroonga",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-oqgraph",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-provider-bzip2",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-provider-lz4",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-provider-lzma",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-provider-lzo",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-provider-snappy",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-rocksdb",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-s3",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-plugin-spider",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-server",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-server-10.5",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-server-core",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-test",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
},
{
"binary_name": "mariadb-test-data",
"binary_version": "1:10.11.14-0ubuntu0.24.04.1"
}
]
}{
"binaries": [
{
"binary_name": "libmariadb-dev-compat",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "libmariadb3",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "libmariadbd19t64",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-backup",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-client",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-client-compat",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-client-core",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-common",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-connect",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-connect-jdbc",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-cracklib-password-check",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-gssapi-client",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-gssapi-server",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-hashicorp-key-management",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-mroonga",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-oqgraph",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-provider-bzip2",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-provider-lz4",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-provider-lzma",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-provider-lzo",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-provider-snappy",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-rocksdb",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-s3",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-plugin-spider",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-server",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-server-10.5",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-server-compat",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-server-core",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-test",
"binary_version": "1:11.8.3-1build1"
},
{
"binary_name": "mariadb-test-data",
"binary_version": "1:11.8.3-1build1"
}
]
}