Out-of-bounds read was discovered in YDB server. An attacker could construct a query with insert statement that would allow him to read sensitive information from other memory locations or cause a crash.
References
| Link | Resource |
|---|---|
| https://ydb.tech/ru/docs/security-changelog#28-11-2022 | Vendor Advisory |
| https://ydb.tech/ru/docs/security-changelog#28-11-2022 | Vendor Advisory |
Configurations
History
21 Nov 2024, 06:56
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://ydb.tech/ru/docs/security-changelog#28-11-2022 - Vendor Advisory |
Information
Published : 2022-12-23 22:15
Updated : 2025-04-15 16:15
NVD link : CVE-2022-28228
Mitre link : CVE-2022-28228
CVE.ORG link : CVE-2022-28228
JSON object : View
Products Affected
ydb
- ydb
CWE
CWE-125
Out-of-bounds Read
