CVE-2024-37820

MEDIUM5.4EPSS 0.11%

PingCAP TiDB nil pointer dereference

Published: 6/25/2024Modified: 11/27/2024
Also known as:GHSA-9g6g-xqv5-8g5wGO-2024-3284

Description

A nil pointer dereference in PingCAP TiDB v8.2.0-alpha-216-gfe5858b allows attackers to crash the application via expression.inferCollation.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 4.0CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N
osvCVSS 3.1MEDIUM5.4CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L

References (6)