Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap out-of-bounds read in Clickhouse's LZ4 compression codec when parsing a malicious query. As part of the LZ4::decompressImpl() loop, a 16-bit unsigned user-supplied value ('offset') is read from the compressed data. The offset is later used in the length of a copy operation, without checking the lower bounds of the source of the copy operation.
CVSS Information
N/A
Vulnerability Type
跨界内存读
Vulnerability Title
Yandex ClickHouse 缓冲区错误漏洞
Vulnerability Description
Yandex ClickHouse是俄罗斯Yandex公司的一套用于在线分析处理的开源列式数据库。 Yandex ClickHouse 存在安全漏洞,目前暂无该漏洞信息,请随时关注CNNVD或厂商公告。
CVSS Information
N/A
Vulnerability Type
N/A