PT-2020-6188 · Mariadb+8 · Mariadb+9

David Busby

·

Published

2020-10-03

·

Updated

2025-06-10

·

CVE-2020-15180

CVSS v3.1

9.0

Critical

VectorAV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions mariadb versions prior to 10.1.47 mariadb versions prior to 10.2.34 mariadb versions prior to 10.3.25 mariadb versions prior to 10.4.15 mariadb versions prior to 10.5.6
Description The issue is related to errors in input data processing during code syntax analysis in the mysql-wsrep component of MariaDB. A flaw was found in the lack of input sanitization in the wsrep sst method, allowing for command injection. This can be exploited by a remote attacker to execute arbitrary commands on Galera cluster nodes, threatening the system's confidentiality, integrity, and availability.
Recommendations For versions prior to 10.1.47, update to a version that includes the fix for this issue. For versions prior to 10.2.34, update to a version that includes the fix for this issue. For versions prior to 10.3.25, update to a version that includes the fix for this issue. For versions prior to 10.4.15, update to a version that includes the fix for this issue. For versions prior to 10.5.6, update to a version that includes the fix for this issue. As a temporary workaround, consider restricting access to the wsrep sst method to minimize the risk of exploitation.

Fix

Command Injection

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2020:5500
ALT-PU-2020-3275
ALT-PU-2020-3295
ALT-PU-2020-3333
BDU:2021-03502
BIT-MARIADB-2020-15180
BIT-MARIADB-MIN-2020-15180
BIT-MYSQL-CLIENT-2020-15180
CESA-2020_5500
CVE-2020-15180
DLA-2409-1
DSA-4776-1
MGASA-2020-0382
OESA-2021-1250
OPENSUSE-SU-2020:2090-1
OPENSUSE-SU-2020:2149-1
OPENSUSE-SU-2020:2254-1
OPENSUSE-SU-2020_2090-1
OPENSUSE-SU-2020_2149-1
OPENSUSE-SU-2020_2254-1
OPENSUSE-SU-2024:11038-1
RHSA-2020:5246
RHSA-2020:5379
RHSA-2020:5500
RHSA-2020:5654
RHSA-2020:5663
RHSA-2020:5665
RHSA-2020_5500
RLSA-2020:5500
SUSE-RU-2023:3956-1
SUSE-RU-2023:4991-1
SUSE-SU-2020:3497-1
SUSE-SU-2020:3500-1
SUSE-SU-2020:3564-1
SUSE-SU-2020:3625-1
USN-4603-1

Affected Products

Alt Linux
Almalinux
Centos
Linuxmint
Mariadb
Mariadb Server
Red Hat
Rocky Linux
Suse
Ubuntu