📦 Tidb

by Pingcap

🔍 What is Tidb?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-41433

CRITICAL CVSS 9.8 Sep 3, 2024

CVE-2024-41433 is a buffer overflow vulnerability in PingCAP TiDB's expression.ExplainExpressionList component that allows attackers to cause Denial of Service through crafted queries. This affects Ti...

CVE-2024-35618

HIGH CVSS 7.5 May 24, 2024

This vulnerability in PingCAP TiDB v7.5.1 involves a NULL pointer dereference in the SortedRowContainer component, which can cause the database service to crash or potentially allow denial of service....

CVE-2022-31011

HIGH CVSS 7.8 May 31, 2022

CVE-2022-31011 is an authentication bypass vulnerability in TiDB 5.3.0 that allows attackers to construct malicious authentication requests to gain unauthorized access or escalate privileges. Only TiD...

CVE-2024-41434

MEDIUM CVSS 4.3 Sep 3, 2024

A buffer overflow vulnerability exists in PingCAP TiDB v8.1.0's (*Column).GetDecimal component when processing crafted queries involving RemoveUnnecessaryFirstRow. This could allow attackers to cause ...

CVE-2024-33809

MEDIUM CVSS 6.5 May 24, 2024

CVE-2024-33809 is a buffer overflow vulnerability in PingCAP TiDB v7.5.1 that could allow attackers to cause database crashes and denial of service. This affects organizations running vulnerable TiDB ...