Out-of-bounds read was discovered in YDB server. An attacker could construct a query with insert statement that would allow him to read sensitive information from other memory locations or cause a crash.
References
Link | Resource |
---|---|
https://ydb.tech/ru/docs/security-changelog#28-11-2022 | Vendor Advisory |
Configurations
Information
Published : 2022-12-23 14:15
Updated : 2023-01-04 10:59
NVD link : CVE-2022-28228
Mitre link : CVE-2022-28228
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
ydb
- ydb