An issue was discovered in ClickHouse before 22.9.1.2603. An authenticated user (with the ability to load data) could cause a heap buffer overflow and crash the server by inserting a malformed CapnProto object. The fixed versions are 22.9.1.2603, 22.8.2.11, 22.7.4.16, 22.6.6.16, and 22.3.12.19.
References
Link | Resource |
---|---|
https://clickhouse.com | Product |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2023-11-23 16:15
Updated : 2023-11-30 20:58
NVD link : CVE-2022-44011
Mitre link : CVE-2022-44011
CVE.ORG link : CVE-2022-44011
JSON object : View
Products Affected
clickhouse
- clickhouse
CWE
CWE-787
Out-of-bounds Write