Medium severity5.4GHSA Advisory· Published Jun 25, 2024· Updated Apr 15, 2026
CVE-2024-37820
CVE-2024-37820
Description
A nil pointer dereference in PingCAP TiDB v8.2.0-alpha-216-gfe5858b allows attackers to crash the application via expression.inferCollation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
github.com/pingcap/tidbGo | < 8.2.0 | 8.2.0 |
Affected products
4- osv-coords3 versionspkg:apk/chainguard/peerdb-flow-compatpkg:golang/github.com/pingcap/tidbpkg:rpm/opensuse/govulncheck-vulndb&distro=openSUSE%20Tumbleweed
< 0.35.0-r0+ 2 more
- (no CPE)range: < 0.35.0-r0
- (no CPE)range: < 8.2.0
- (no CPE)range: < 0.0.20241209T183251-1.1
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.