Bug 2548739 (CVE-2026-107816) - CVE-2026-107816 mariadb: mariadb: Information disclosure via embedded null bytes in query cache plugin
Summary: CVE-2026-107816 mariadb: mariadb: Information disclosure via embedded null by...
Keywords:
Status: NEW
Alias: CVE-2026-107816
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-10-09 17:32 UTC by OSIDB Bzimport
Modified: 2026-10-09 17:39 UTC (History)
9 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-10-09 17:32:37 UTC
MariaDB server is a community developed fork of MySQL server. From 10.6.1 until 10.6.28, 10.11.19, 11.4.13, 11.8.9, 12.3.3, and 13.0.2, the qc_info plugin could be confused by a query containing embedded null bytes. Reading information_schema.query_cache_info after such a query was cached could access data beyond the end of a heap-allocated buffer, potentially disclosing adjacent memory or crashing the server. This issue is fixed in versions 10.6.28, 10.11.19, 11.4.13, 11.8.9, 12.3.3, and 13.0.2.


Note You need to log in before you can comment on or make changes to this bug.