CVE-2024-41434 - TiDB Column Buffer Overflow DoS

1 month ago 12
ARTICLE AD BOX
CVE ID : CVE-2024-41434
Published : Sept. 3, 2024, 8:15 p.m. | 24 minutes ago
Description : PingCAP TiDB v8.1.0 was discovered to contain a buffer overflow via the component (*Column).GetDecimal. This allows attackers to cause a Denial of Service (DoS) via a crafted input to the 'RemoveUnnecessaryFirstRow', it will check the expression between 'Agg' and 'GroupBy', but does not check the return type.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article