Packages
- virtuoso-opensource - high-performance database
Details
Jingzhou Fu discovered that Virtuoso Open-Source Edition incorrectly
handled certain crafted SQL statements. An attacker could possibly use
this issue to crash the program, resulting in a denial of service.
(CVE-2023-31620, CVE-2023-31622, CVE-2023-31624, CVE-2023-31626,
CVE-2023-31627, CVE-2023-31629, CVE-2023-31630, CVE-2023-31631,
CVE-2023-48951)
Jingzhou Fu discovered that Virtuoso Open-Source Edition incorrectly
handled certain crafted SQL statements. An attacker could possibly use
this issue to crash the program, resulting in a denial of service.
This issue only affects Ubuntu 22.04 LTS and...
Jingzhou Fu discovered that Virtuoso Open-Source Edition incorrectly
handled certain crafted SQL statements. An attacker could possibly use
this issue to crash the program, resulting in a denial of service.
(CVE-2023-31620, CVE-2023-31622, CVE-2023-31624, CVE-2023-31626,
CVE-2023-31627, CVE-2023-31629, CVE-2023-31630, CVE-2023-31631,
CVE-2023-48951)
Jingzhou Fu discovered that Virtuoso Open-Source Edition incorrectly
handled certain crafted SQL statements. An attacker could possibly use
this issue to crash the program, resulting in a denial of service.
This issue only affects Ubuntu 22.04 LTS and Ubuntu 24.04 LTS.
(CVE-2023-48945, CVE-2023-48946, CVE-2023-48947, CVE-2023-48950)
Update instructions
In general, a standard system update will make all the necessary changes.
Learn more about how to get the fixes.The problem can be corrected by updating your system to the following package versions:
Ubuntu Release | Package Version | ||
---|---|---|---|
24.04 noble | virtuoso-opensource – 7.2.5.1+dfsg1-0.8ubuntu0.1~esm2 | ||
virtuoso-opensource-7 – 7.2.5.1+dfsg1-0.8ubuntu0.1~esm2 | |||
virtuoso-opensource-7-bin – 7.2.5.1+dfsg1-0.8ubuntu0.1~esm2 | |||
22.04 jammy | virtuoso-opensource – 7.2.5.1+dfsg1-0.2ubuntu0.1~esm2 | ||
virtuoso-opensource-7 – 7.2.5.1+dfsg1-0.2ubuntu0.1~esm2 | |||
virtuoso-opensource-7-bin – 7.2.5.1+dfsg1-0.2ubuntu0.1~esm2 | |||
20.04 focal | virtuoso-opensource – 6.1.6+repack-0ubuntu10+esm2 | ||
virtuoso-opensource-6.1 – 6.1.6+repack-0ubuntu10+esm2 | |||
virtuoso-opensource-6.1-bin – 6.1.6+repack-0ubuntu10+esm2 | |||
18.04 bionic | virtuoso-opensource – 6.1.6+repack-0ubuntu9+esm2 | ||
virtuoso-opensource-6.1 – 6.1.6+repack-0ubuntu9+esm2 | |||
virtuoso-opensource-6.1-bin – 6.1.6+repack-0ubuntu9+esm2 | |||
16.04 xenial | virtuoso-opensource – 6.1.6+repack-0ubuntu5+esm2 | ||
virtuoso-opensource-6.1 – 6.1.6+repack-0ubuntu5+esm2 | |||
virtuoso-opensource-6.1-bin – 6.1.6+repack-0ubuntu5+esm2 |
Reduce your security exposure
Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.
References
- CVE-2023-48951
- CVE-2023-48950
- CVE-2023-48947
- CVE-2023-48946
- CVE-2023-48945
- CVE-2023-31631
- CVE-2023-31630
- CVE-2023-31629
- CVE-2023-31627
- CVE-2023-31626
- CVE-2023-48951
- CVE-2023-48950
- CVE-2023-48947
- CVE-2023-48946
- CVE-2023-48945
- CVE-2023-31631
- CVE-2023-31630
- CVE-2023-31629
- CVE-2023-31627
- CVE-2023-31626
- CVE-2023-31624
- CVE-2023-31622
- CVE-2023-31620