Medium severity5.4GHSA Advisory· Published Jun 25, 2024· Updated Jun 17, 2026
CVE-2024-37820
CVE-2024-37820
Description
A nil pointer dereference in PingCAP TiDB v8.2.0-alpha-216-gfe5858b allows attackers to crash the application via expression.inferCollation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
github.com/pingcap/tidbGo | < 8.2.0 | 8.2.0 |
Affected products
5- ghsa-coords4 versionspkg:golang/github.com/pingcap/tidbpkg:apk/chainguard/peerdb-flow-compatpkg:rpm/opensuse/govulncheck-vulndb&distro=openSUSE%20Tumbleweedpkg:apk/chainguard/peerdb-flow
< 8.2.0+ 3 more
- (no CPE)range: < 8.2.0
- (no CPE)range: < 0.35.0-r0
- (no CPE)range: < 0.0.20241209T183251-1.1
- (no CPE)range: < 0
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.