Candidate: CVE-2021-46666 PublicDate: 2022-02-01 02:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-46666 https://jira.mariadb.org/browse/MDEV-25635 Description: MariaDB before 10.6.2 allows an application crash because of mishandling of a pushdown from a HAVING clause to a WHERE clause. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Zuming Jiang Assigned-to: CVSS: nvd: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H [5.5 MEDIUM] Patches_mariadb-10.6: upstream_mariadb-10.6: not-affected (debian: Fixed before initial upload to Debian) trusty_mariadb-10.6: ignored (out of standard support) xenial_mariadb-10.6: ignored (out of standard support) jammy_mariadb-10.6: needs-triage devel_mariadb-10.6: needs-triage Patches_mariadb-10.5: upstream_mariadb-10.5: released (1:10.5.11-1) trusty_mariadb-10.5: ignored (out of standard support) xenial_mariadb-10.5: ignored (out of standard support) impish_mariadb-10.5: not-affected (1:10.5.12-1build1) Patches_mariadb-10.3: upstream_mariadb-10.3: needs-triage trusty_mariadb-10.3: ignored (out of standard support) xenial_mariadb-10.3: ignored (out of standard support) focal_mariadb-10.3: needed