PT-2023-25558 · Monetdb+1 · Monetdb Server+1

Published

2015-01-23

·

Updated

2024-12-06

·

CVE-2023-36370

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions MonetDB Server versions 11.45.17 through 11.46.0
Description The issue in the gc col component allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.
Recommendations For versions 11.45.17 and 11.46.0, consider restricting access to the gc col component until a patch is available. As a temporary workaround, avoid using crafted SQL statements that may trigger the Denial of Service (DoS) condition.

Exploit

Fix

DoS

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1074
CVE-2023-36370

Affected Products

Alt Linux
Monetdb Server