PT-2023-4102 · Unknown+1 · Monetdb Server+1

·

CVE-2023-36368

·

Publicado

2015-01-23

·

Atualizado

2024-12-02

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions MonetDB Server versions 11.45.17 through 11.46.0
Description The issue in the cs bind ubat component allows attackers to cause a Denial of Service (DoS) via crafted SQL statements. It is related to incorrect clearance or release of resources, which can be exploited by a remote attacker to cause a service disruption.
Recommendations For MonetDB Server versions 11.45.17 and 11.46.0, consider restricting access to the cs bind ubat component until a patch is available. As a temporary workaround, avoid using crafted SQL statements that may trigger the Denial of Service (DoS) condition in the affected versions.

Exploit

Correção

DoS

Allocation of Resources Without Limits

Improper Resource Release

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2015-1074
BDU:2023-04410
CVE-2023-36368

Produtos afetados

Alt Linux
Monetdb Server