6.8
CVSSv2

CVE-2020-13249

Published: 20/05/2020 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

libmariadb/mariadb_lib.c in MariaDB Connector/C prior to 3.1.8 does not properly validate the content of an OK packet received from a server. NOTE: although mariadb_lib.c was originally based on code shipped for MySQL, this issue does not affect any MySQL components supported by Oracle.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mariadb connector\\/c

opensuse leap 15.1

fedoraproject fedora 31

fedoraproject fedora 32

Vendor Advisories

Synopsis Moderate: rh-mariadb102-mariadb and rh-mariadb102-galera security and bug fix update Type/Severity Security Advisory: Moderate Topic An update for rh-mariadb102-mariadb and rh-mariadb102-galera is now available for Red Hat Software CollectionsRed Hat Product Security has rated this update as havin ...
Synopsis Moderate: mariadb-connector-c security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Topic An update for mariadb-connector-c is now available for Red Hat Enterprise Linux 80 Update Services for SAP SolutionsRed Hat Product Security has rated this update as having a se ...
Synopsis Moderate: mariadb-connector-c security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Topic An update for mariadb-connector-c is now available for Red Hat Enterprise Linux 82 Extended Update SupportRed Hat Product Security has rated this update as having a security imp ...
Synopsis Important: mariadb:103 security, bug fix, and enhancement update Type/Severity Security Advisory: Important Topic An update for the mariadb:103 module is now available for Red Hat Enterprise Linux 82 Extended Update SupportRed Hat Product Security has rated this update as having a security impa ...
Synopsis Important: mariadb:103 security, bug fix, and enhancement update Type/Severity Security Advisory: Important Topic An update for the mariadb:103 module is now available for Red Hat Enterprise Linux 81 Extended Update SupportRed Hat Product Security has rated this update as having a security impa ...
Synopsis Moderate: mariadb-connector-c security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Topic An update for mariadb-connector-c is now available for Red Hat Enterprise Linux 81 Extended Update SupportRed Hat Product Security has rated this update as having a security imp ...
Synopsis Important: rh-mariadb103-mariadb and rh-mariadb103-galera security update Type/Severity Security Advisory: Important Topic An update for rh-mariadb103-mariadb and rh-mariadb103-galera is now available for Red Hat Software CollectionsRed Hat Product Security has rated this update as having a securi ...
Synopsis Important: mariadb:103 security, bug fix, and enhancement update Type/Severity Security Advisory: Important Topic An update for the mariadb:103 module is now available for Red Hat Enterprise Linux 80 Update Services for SAP SolutionsRed Hat Product Security has rated this update as having a sec ...
Synopsis Moderate: mariadb-connector-c security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Topic An update for mariadb-connector-c is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Moderate A Common ...
Synopsis Important: mariadb:103 security, bug fix, and enhancement update Type/Severity Security Advisory: Important Topic An update for the mariadb:103 module is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Important A Common ...
Synopsis Moderate: OpenShift Container Platform 4612 bug fix and security update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 4612 is now available withupdates to packages and images that fix several bugsThis release includes a security update for Red Hat ...