Search CVE reports


Toggle filters

1 – 10 of 22 results


CVE-2025-52969

Negligible priority
Not affected

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

1 affected package

clickhouse

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clickhouse Not affected Not in release Not affected
Show less packages

CVE-2019-16536

Medium priority
Needs evaluation

Stack overflow leading to DoS can be triggered by a malicious authenticated client in Clickhouse before 19.14.3.3.

1 affected package

clickhouse

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clickhouse Not in release Needs evaluation Not in release Ignored
Show less packages

CVE-2025-1385

Medium priority
Needs evaluation

When the library bridge feature is enabled, the clickhouse-library-bridge exposes an HTTP API on localhost. This allows clickhouse-server to dynamically load a library from a specified path and execute it in an isolated process....

1 affected package

clickhouse

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clickhouse Not in release Needs evaluation Not in release Ignored
Show less packages

CVE-2024-41436

Medium priority
Needs evaluation

ClickHouse v24.3.3.102 was discovered to contain a buffer overflow via the component DB::evaluateConstantExpressionImpl.

1 affected package

clickhouse

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clickhouse Not in release Needs evaluation Not in release Ignored
Show less packages

CVE-2024-6873

Medium priority
Needs evaluation

It is possible to crash or redirect the execution flow of the ClickHouse server process from an unauthenticated vector by sending a specially crafted request to the ClickHouse server native interface. This redirection is limited...

1 affected package

clickhouse

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clickhouse Not in release Needs evaluation Not in release Ignored Not in release
Show less packages

CVE-2024-22412

Medium priority
Needs evaluation

ClickHouse is an open-source column-oriented database management system. A bug exists in the cloud ClickHouse offering prior to version 24.0.2.54535 and in github.com/clickhouse/clickhouse version 23.1. Query caching bypasses the...

1 affected package

clickhouse

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clickhouse Not in release Needs evaluation Not in release Ignored
Show less packages

CVE-2023-48704

Medium priority
Needs evaluation

ClickHouse is an open-source column-oriented database management system that allows generating analytical data reports in real-time. A heap buffer overflow issue was discovered in ClickHouse server. An attacker could send a...

1 affected package

clickhouse

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clickhouse Not in release Needs evaluation Not in release Ignored Ignored
Show less packages

CVE-2023-48298

Medium priority
Needs evaluation

ClickHouse® is an open-source column-oriented database management system that allows generating analytical data reports in real-time. This vulnerability is an integer underflow resulting in crash due to stack buffer overflow in...

1 affected package

clickhouse

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clickhouse Not in release Needs evaluation Not in release Ignored Ignored
Show less packages

CVE-2023-47118

Medium priority
Needs evaluation

ClickHouse® is an open-source column-oriented database management system that allows generating analytical data reports in real-time. A heap buffer overflow issue was discovered in ClickHouse server. An attacker could send a...

1 affected package

clickhouse

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clickhouse Not in release Needs evaluation Not in release Ignored Ignored
Show less packages

CVE-2022-44011

Medium priority
Needs evaluation

An issue was discovered in ClickHouse before 22.9.1.2603. An authenticated user (with the ability to load data) could cause a heap buffer overflow and crash the server by inserting a malformed CapnProto object. The fixed versions...

1 affected package

clickhouse

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clickhouse Not in release Needs evaluation Not in release Ignored Ignored
Show less packages