PT-2023-25551 · Monetdb+1 · Monetdb Server+1

Fuboat

·

Published

2015-01-23

·

Updated

2024-12-02

·

CVE-2023-36363

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions MonetDB Server versions 11.45.17 through 11.46.0
Description The issue in the nss database lookup component allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.
Recommendations For MonetDB Server versions 11.45.17 through 11.46.0, consider restricting the use of crafted SQL statements to minimize the risk of exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

SQL injection

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1074
CVE-2023-36363

Affected Products

Alt Linux
Monetdb Server