Out-of-bounds read was discovered in YDB server. An attacker could construct a query with insert statement that would allow him to read sensitive information from other memory locations or cause a crash.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://ydb.tech/ru/docs/security-changelog#28-11-2022 |
|
History
Tue, 15 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: yandex
Published: 2022-12-23T00:00:00.000Z
Updated: 2025-04-15T15:12:57.634Z
Reserved: 2022-03-30T00:00:00.000Z
Link: CVE-2022-28228
Updated: 2024-08-03T05:48:37.596Z
Status : Modified
Published: 2022-12-23T22:15:08.647
Modified: 2025-04-15T16:15:18.337
Link: CVE-2022-28228
No data.
ReportizFlow