Rocky Linux 9 [CIQ] 安全性更新:galera / galera-debuginfo / galera-debugsource / mariadb / etc 多個弱點 (crlsa-2022_5948)

high Nessus Plugin ID 357625

概要

Rocky Linux 主機缺少一或多個安全性更新。

說明

Rocky Linux 9 主機已安裝的套件會受到 CIQ crlsa-2022_5948 公告中提及的多個弱點影響。

* mariadb:MariaDB through 允許 10.5.9 攻擊者在使用 BIGINT 資料類型時觸發釋放後convert_const_to_int使用 (CVE-2021-46669)

* mariadb:在將使用者提供的資料複製到固定長度堆疊型緩衝區之前,缺乏對其長度的適當驗證 (CVE-2022-24048)

* mariadb:在對物件執行作業之前,缺少驗證物件的存在 (CVE-2022-24050)

* mariadb:在將使用者提供的字串用作格式說明符之前,缺乏對其進行適當的驗證 (CVE-2022-24051)

* mariadb: CONNECT 儲存引擎堆積型緩衝區溢位權限提升弱點 (CVE-2022-24052)

* mariadb:Item_args:walk_arg (CVE-2022-27376) 中的宣告失敗

* mariadb:當 blob (CVE-2022-27377) 中涉及複雜轉換時,中毒後使用

* mariadb:create_tmp_table:finalize (CVE-2022-27378) 中的伺服器崩潰

* mariadb:元件 arg_comparator:compare_real_fixed (CVE-2022-27379) 中的伺服器崩潰

* mariadb:伺服器在 my_decimal::operator= (CVE-2022-27380) 處當機

* mariadb:透過特製的 SQL 陳述式 (CVE-2022-27381) 在 Field::set_default 發生伺服器損毀

* mariadb:透過元件 Item_field:used_tables/update_depend_map_for_order (CVE-2022-27382) 宣告失敗

* mariadb:ctype-simple.c () 的 my_strcasecmp_8bit() 中的中毒後使用 (CVE-2022-27383)

* mariadb:透過元件 Item_subselect::init_expr_cache_tracker 當機 (CVE-2022-27384)

* mariadb:伺服器在 query_arena:set_query_arena 中從檢視 (CVE-2022-27386) 中 SELECT 時當機

* mariadb:decimal_bin_size (CVE-2022-27387) 中的宣告失敗

* mariadb:在相等式 (CVE-2022-27444) 中使用 HAVING 和 NOT EXIST 述詞時當機

* mariadb:compare_order_elements (CVE-2022-27445) 中的宣告失敗

* mariadb:在相等式 (CVE-2022-27446) 中使用帶有 IS NULL 述詞的 HAVING 時當機

* mariadb:Binary_string:free_buffer 中的中毒後使用 (CVE-2022-27447)

* mariadb:在多重更新和隱含分組中損毀 (CVE-2022-27448)

* mariadb:sql/item_func.cc (CVE-2022-27449) 中的宣告失敗

* mariadb:透過 ORDER BY (CVE-2022-27451) 運算式中的視窗函式當機

* mariadb:sql/item_cmpfunc.cc (CVE-2022-27452) 中的宣告失敗

* mariadb:當 WHERE 具有在 HAVING (CVE-2022-27455) 中具有外部參照的子查詢時,釋放後使用

* mariadb:在 /sql/sql_type.cc 的 VDec::VDec 中的宣告失敗 (CVE-2022-27456)

* mariadb:長 unique (CVE-2022-27457) 之後的重複值錯誤中的鍵不正確

* mariadb:Binary_string:free_buffer 中的中毒後使用 (CVE-2022-27458)

* mariadb:由於 extra/mariabackup/ds_compress.cc (CVE-2022-31622) 中未釋放的鎖定,導致鎖定不當

* mariadb:由於 extra/mariabackup/ds_compress.cc (CVE-2022-31623) 中未釋放的鎖定,導致鎖定不當

* mariadb:使用 VIEW、aggregate 和 subquery (CVE-2021-46659) 執行查詢時當機

* mariadb:MariaDB 允許應用程式透過未使用的公共表運算式 (CTE) 在find_field_in_tables和find_order_in_list中當機 (CVE-2021-46661)

* mariadb:MariaDB through 允許 10.5.13 透過某些 SELECT 陳述式 (CVE-2021-46663) 導致 ha_maria::extra 應用程式損毀

* mariadb:MariaDB through 允許 10.5.9 應用程式在 sub_select_postjoin_aggr 中因 aggr (CVE-2021-46664) 的 NULL 值而當機

* mariadb:MariaDB 通過 10.5.9 允許 sql_parse.cc 應用程序因不正確的used_tables期望而當機 (CVE-2021-46665)

* mariadb:MariaDB 透過 10.5.9 某些長 SELECT DISTINCT 陳述式 (CVE-2021-46668) 允許應用程式當機

Tenable 已直接從 CIQ 安全性公告中擷取上述描述區塊。

請注意,Nessus 並未測試這些問題,而是僅依據應用程式自我報告的版本號碼作出判斷。

解決方案

根據 CIQ 公告 crlsa-2022_5948中的指引更新受影響的套件。

另請參閱

https://access.redhat.com/errata/RHSA-2022:5948

https://bugzilla.redhat.com/show_bug.cgi?id=2049302

https://bugzilla.redhat.com/show_bug.cgi?id=2050017

https://bugzilla.redhat.com/show_bug.cgi?id=2050022

https://bugzilla.redhat.com/show_bug.cgi?id=2050024

https://bugzilla.redhat.com/show_bug.cgi?id=2050026

https://bugzilla.redhat.com/show_bug.cgi?id=2050032

https://bugzilla.redhat.com/show_bug.cgi?id=2050034

https://bugzilla.redhat.com/show_bug.cgi?id=2068211

https://bugzilla.redhat.com/show_bug.cgi?id=2068233

https://bugzilla.redhat.com/show_bug.cgi?id=2068234

https://bugzilla.redhat.com/show_bug.cgi?id=2069833

https://bugzilla.redhat.com/show_bug.cgi?id=2074817

https://bugzilla.redhat.com/show_bug.cgi?id=2074947

https://bugzilla.redhat.com/show_bug.cgi?id=2074949

https://bugzilla.redhat.com/show_bug.cgi?id=2074951

https://bugzilla.redhat.com/show_bug.cgi?id=2074966

https://bugzilla.redhat.com/show_bug.cgi?id=2074981

https://bugzilla.redhat.com/show_bug.cgi?id=2074987

https://bugzilla.redhat.com/show_bug.cgi?id=2074996

https://bugzilla.redhat.com/show_bug.cgi?id=2074999

https://bugzilla.redhat.com/show_bug.cgi?id=2075005

https://bugzilla.redhat.com/show_bug.cgi?id=2075006

https://bugzilla.redhat.com/show_bug.cgi?id=2075691

https://bugzilla.redhat.com/show_bug.cgi?id=2075692

https://bugzilla.redhat.com/show_bug.cgi?id=2075693

https://bugzilla.redhat.com/show_bug.cgi?id=2075694

https://bugzilla.redhat.com/show_bug.cgi?id=2075695

https://bugzilla.redhat.com/show_bug.cgi?id=2075696

https://bugzilla.redhat.com/show_bug.cgi?id=2075697

https://bugzilla.redhat.com/show_bug.cgi?id=2075699

https://bugzilla.redhat.com/show_bug.cgi?id=2075700

https://bugzilla.redhat.com/show_bug.cgi?id=2075701

https://bugzilla.redhat.com/show_bug.cgi?id=2076144

https://bugzilla.redhat.com/show_bug.cgi?id=2076145

https://bugzilla.redhat.com/show_bug.cgi?id=2092354

https://bugzilla.redhat.com/show_bug.cgi?id=2092360

https://bugzilla.redhat.com/show_bug.cgi?id=2096271

https://bugzilla.redhat.com/show_bug.cgi?id=2096274

https://bugzilla.redhat.com/show_bug.cgi?id=2096276

https://bugzilla.redhat.com/show_bug.cgi?id=2096277

https://errata.build.resf.org/RLSA-2022:5948

http://www.nessus.org/u?afc3f91c

http://www.nessus.org/u?e72534f6

Plugin 詳細資訊

嚴重性: High

ID: 357625

檔案名稱: ciq_rocky_linux_9_crlsa-2022_5948.nasl

版本: 1.1

類型: Local

已發布: 2026/10/1

已更新: 2026/10/1

支援的感應器: Continuous Assessment, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

風險資訊

VPR

風險因素: Medium

分數: 5

百分位數: 94.89

Vendor

Vendor Severity: Unknown

CVSS v2

風險因素: Medium

基本分數: 4.6

時間性分數: 3.6

媒介: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:P

CVSS 評分資料來源: CVE-2022-24052

CVSS v3

風險因素: High

基本分數: 7.8

時間性分數: 7

媒介: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

時間媒介: CVSS:3.0/E:P/RL:O/RC:C

弱點資訊

必要的 KB 項目: Host/OS/extended-third-party, Host/local_checks_enabled, Host/RockyLinux/release, Host/RockyLinux/rpm-list, Host/cpu

可被惡意程式利用: true

可輕鬆利用: Exploits are available

修補程式發佈日期: 2022/8/9

弱點發布日期: 2022/1/29

參考資訊

CVE: CVE-2021-46659, CVE-2021-46661, CVE-2021-46663, CVE-2021-46664, CVE-2021-46665, CVE-2021-46668, CVE-2021-46669, CVE-2022-21595, CVE-2022-24048, CVE-2022-24050, CVE-2022-24051, CVE-2022-24052, CVE-2022-27376, CVE-2022-27377, CVE-2022-27378, CVE-2022-27379, CVE-2022-27380, CVE-2022-27381, CVE-2022-27382, CVE-2022-27383, CVE-2022-27384, CVE-2022-27386, CVE-2022-27387, CVE-2022-27444, CVE-2022-27445, CVE-2022-27446, CVE-2022-27447, CVE-2022-27448, CVE-2022-27449, CVE-2022-27451, CVE-2022-27452, CVE-2022-27455, CVE-2022-27456, CVE-2022-27457, CVE-2022-27458, CVE-2022-31622, CVE-2022-31623