Candidate: CVE-2021-46657 PublicDate: 2022-01-29 23:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-46657 https://jira.mariadb.org/browse/MDEV-25629 Description: get_sort_by_table in MariaDB before 10.6.2 allows an application crash via certain subquery uses of ORDER BY. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H [5.5 MEDIUM] Patches_mariadb-10.6: upstream_mariadb-10.6: not-affected (debian: Fixed before initial upload to Debian) trusty_mariadb-10.6: ignored (out of standard support) xenial_mariadb-10.6: ignored (out of standard support) jammy_mariadb-10.6: not-affected (1:10.6.2-1) devel_mariadb-10.6: not-affected (1:10.6.2-1) Patches_mariadb-10.5: upstream_mariadb-10.5: released (1:10.5.11-1) trusty_mariadb-10.5: ignored (out of standard support) xenial_mariadb-10.5: ignored (out of standard support) impish_mariadb-10.5: not-affected (1:10.5.12-1build1) Patches_mariadb-10.3: upstream_mariadb-10.3: needs-triage trusty_mariadb-10.3: ignored (out of standard support) xenial_mariadb-10.3: ignored (out of standard support) focal_mariadb-10.3: needs-triage