Vulnerability Details CVE-2022-28228
Out-of-bounds read was discovered in YDB server. An attacker could construct a query with insert statement that would allow him to read sensitive information from other memory locations or cause a crash.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 49.6%
CVSS Severity
CVSS v3 Score 9.1
Products affected by CVE-2022-28228
-
cpe:2.3:a:ydb:ydb:22.2.22
-
cpe:2.3:a:ydb:ydb:22.2.31
-
cpe:2.3:a:ydb:ydb:22.2.38
-
Ydb
»
Ydb
»
Version: 22.2.38.1
cpe:2.3:a:ydb:ydb:22.2.38.1
-
cpe:2.3:a:ydb:ydb:22.2.39
-
cpe:2.3:a:ydb:ydb:22.2.40
-
cpe:2.3:a:ydb:ydb:22.2.46
-
cpe:2.3:a:ydb:ydb:22.2.47
-
-
cpe:2.3:a:ydb:ydb:22.4.21
-
cpe:2.3:a:ydb:ydb:22.4.30
-
cpe:2.3:a:ydb:ydb:22.4.31
-
cpe:2.3:a:ydb:ydb:22.4.43
-
cpe:2.3:a:ydb:ydb:22.4.44