Back to search
CVE-2019-16535
Published: Dec 30, 2019
Modified: Aug 5, 2024
PUBLISHED
Description
In all versions of ClickHouse before 19.14, an OOB read, OOB write and integer underflow in decompression algorithms can be used to achieve RCE or DoS via native protocol.
| Vendor | Product | Versions |
|---|---|---|
n/a | ClickHouse | affected All versions prior to version 19.14. |
References
https://clickhouse.yandex/docs/en/security_changelog/
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now