MariaDB server is a community developed fork of MySQL server. Started by core members of the original MySQL team, MariaDB actively works with outside developers to deliver the most featureful, stable, and sanely licensed open SQL server in the industry.
Find a file
Sachin 482d4da0a7 MDEV-15127 AddressSanitizer: stack-buffer-overflow in base_list::push_back ..
Problem:-
 If we try to run this query with -WITH_ASAN=ON compiled server
  CREATE TABLE t1 (i INT);
  SET debug_dbug="+d,test_completely_invisible,test_invisible_index";
  CREATE TABLE t2 LIKE t1;

 This will generate a stack buffer overflow error.
  ==8922==ERROR: AddressSanitizer: stack-buffer-overflow on address #ADDR
Analyze:-
 Error is generated on this line
       if (((*last)=new list_node(info, &end_of_list)))
 So info is our Key*, &end_of_list is global variable and last == #ADDR
 So last is suspicious variable. And last is the variable present in alter_info
 ->key_list. Now the question is how this key_list->last gets wrong/
 different stack variable. In the backtrace,  we can see that key_list is
 generated in mysql_create_table_like_table by calling
 mysql_preapre_alter_table_function and dummy key_list is created by
 mysql_create_like_table. In the end on mysql_prepare_alter_table we call
   alter_info->key_list.swap(new_key_list);
 So there is two options either key_list is empty or not empty , IF it is not
 empty then there is no issues last ptr is replaced by thd->mem_root (allocated ptr)
 So problem arises when key_list is empty. It swaps the dummy last ptr by
 mysql_prepare_alter_table declared ptr. which is wrong.

Solution:-
 We wont swap variable if list does not have any element.
2018-08-07 22:36:37 +05:30
BUILD Renamed compile-pentium scripts to compile-pentium32 2018-04-16 20:16:43 +03:00
client Merge 10.2 into 10.3 2018-08-03 15:57:23 +03:00
cmake Merge 10.2 into 10.3 2018-08-03 15:57:23 +03:00
dbug Misc. typos 2018-04-05 15:26:57 +04:00
debian MDEV-16666: Partially revert "Deb: Update documentation and fix spelling errors" 2018-08-05 17:15:03 +03:00
Docs Misc. typos 2018-04-05 15:26:57 +04:00
extra remove warning on Windows 2018-08-05 00:36:59 +01:00
include Merge 10.2 into 10.3 2018-08-03 15:57:23 +03:00
libmariadb@ebf5db6cd0 update C/C 2018-07-01 16:33:42 +02:00
libmysqld Mark embedded library as deinited. 2018-06-25 14:50:36 +02:00
libservices Remove compiler warnings 2018-01-30 21:33:56 +02:00
man MDEV-12645 - mysql_install_db: no install test db option 2018-04-30 19:34:08 +04:00
mysql-test MDEV-15127 AddressSanitizer: stack-buffer-overflow in base_list::push_back .. 2018-08-07 22:36:37 +05:30
mysys Merge 10.2 into 10.3 2018-08-03 15:57:23 +03:00
mysys_ssl MDEV-15513 use EVP_MD_CTX_{new,free} instead of EVP_MD_CTX_{create, destroy} 2018-05-21 16:34:10 +00:00
pcre Merge branch '10.1' into 10.2 2018-05-10 13:01:42 +02:00
plugin Merge branch '10.2' into 10.3 2018-06-30 16:39:20 +02:00
randgen/conf
scripts Merge 10.2 into 10.3 2018-08-03 15:57:23 +03:00
sql MDEV-15127 AddressSanitizer: stack-buffer-overflow in base_list::push_back .. 2018-08-07 22:36:37 +05:30
sql-bench Added more test to sql-bench 2018-04-30 14:05:27 +03:00
sql-common Merge 10.2 into 10.3 2018-08-03 15:57:23 +03:00
storage MDEV-16544 - crash in ha_sphinx::create() 2018-08-05 00:33:12 +01:00
strings Merge 10.2 into 10.3 2018-08-03 15:57:23 +03:00
support-files Merge branch '10.2' into 10.3 2018-06-30 16:39:20 +02:00
tests Merge 10.2 into 10.3 2018-05-17 08:42:53 +03:00
unittest Merge branch '10.2' into 10.3 2018-06-30 16:39:20 +02:00
vio Merge branch '10.2' into 10.3 2018-06-30 16:39:20 +02:00
win MDEV-16345 : No upgrade wizard in 10.3 in Windows packages. 2018-05-30 21:37:51 +00:00
wsrep Prevent building WSREP without INNODB 2018-02-15 15:00:46 +00:00
zlib Build improvements and cleanups. 2017-09-08 18:22:15 +00:00
.gitattributes Merge branch '10.0' into 10.1 2018-05-05 14:01:59 +02:00
.gitignore Merge branch '10.2' into 10.3 2018-06-30 16:39:20 +02:00
.gitmodules Use https instead of ssh(git@) for rocksdb submodule. 2016-11-15 10:00:19 -05:00
.travis.compiler.sh MDEV-16213: Travis whitespace fix and remove comment 2018-06-29 13:57:36 +03:00
.travis.yml MDEV-16213: Travis whitespace fix and remove comment 2018-06-29 13:57:36 +03:00
appveyor.yml Add some hints for finding bison on its usual locations on Windows. 2018-02-14 17:01:07 +00:00
BUILD-CMAKE Minor spelling fixes in code comments, docs and output 2018-01-12 16:49:02 +02:00
CMakeLists.txt Merge 10.2 into 10.3 2018-08-03 15:57:23 +03:00
config.h.cmake Cleanup log2() portability checks 2018-05-26 13:30:13 +04:00
configure.cmake Cleanup log2() portability checks 2018-05-26 13:30:13 +04:00
COPYING
COPYING.thirdparty Correct FSF address 2017-03-10 18:21:29 +01:00
CREDITS Update contributors 2018-04-05 14:23:18 +04:00
EXCEPTIONS-CLIENT MDEV-5645 MariaDB-5.5.35 - references are made to an "EXCEPTIONS-CLIENT" file but it does not exist 2014-05-31 13:18:56 +02:00
INSTALL-SOURCE Update AskMonty and Atlassian references to MariaDB 2016-03-08 15:24:01 +02:00
INSTALL-WIN-SOURCE Update AskMonty and Atlassian references to MariaDB 2016-03-08 15:24:01 +02:00
KNOWN_BUGS.txt
README.md Update travis test status and position in README file 2018-06-30 10:28:51 +03:00
VERSION bump the VERSION 2018-07-02 20:55:10 -04:00

Code status:

  • tests status travis-ci.org (10.3 branch)

MariaDB: drop-in replacement for MySQL

MariaDB is designed as a drop-in replacement of MySQL(R) with more features, new storage engines, fewer bugs, and better performance.

MariaDB is brought to you by the MariaDB Foundation. Please read the CREDITS file for details about the MariaDB Foundation, and who is developing MariaDB.

MariaDB is developed by many of the original developers of MySQL who now work for the MariaDB Foundation and the MariaDB Corporation, and by many people in the community.

MySQL, which is the base of MariaDB, is a product and trademark of Oracle Corporation, Inc. For a list of developers and other contributors, see the Credits appendix. You can also run 'SHOW authors' to get a list of active contributors.

A description of the MariaDB project and a manual can be found at:

https://mariadb.org/

https://mariadb.com/kb/en/

https://mariadb.com/kb/en/mariadb-vs-mysql-features/

https://mariadb.com/kb/en/mariadb-versus-mysql-features/

https://mariadb.com/kb/en/mariadb-versus-mysql-compatibility/

As MariaDB is a full replacement of MySQL, the MySQL manual at http://dev.mysql.com/doc is generally applicable.

Help:

More help is available from the Maria Discuss mailing list https://launchpad.net/~maria-discuss and the #maria IRC channel on Freenode.

License:


NOTE:

MariaDB is specifically available only under version 2 of the GNU General Public License (GPLv2). (I.e. Without the "any later version" clause.) This is inherited from MySQL. Please see the README file in the MySQL distribution for more information.

License information can be found in the COPYING, COPYING.LESSER, and COPYING.thirdparty files.


Bug Reports:

Bug and/or error reports regarding MariaDB should be submitted at https://mariadb.org/jira

Bugs in the MySQL code can also be submitted at https://bugs.mysql.com

The code for MariaDB, including all revision history, can be found at: https://github.com/MariaDB/server