Mariadb
mariadb
418 CVEs • 4 products
Products (4)
Click to collapseToggle
Products (4)
Click to collapse
CVEs (418)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Debian Mariadb2Debian Linux MariadbJun 17, 2026 Apr 12, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 MariaDB Server v10.6.5 and below was discovered to contain an use-after-free in the component Item_args::walk_arg, which is exploited via specially crafted SQL statements. |
11Apple AzulDebian+8 more27Active Iq Unified Manager Debian LinuxE Series Santricity Os Controller+24 moreJul 14, 2026 Mar 25, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches. |
7Debian FedoraprojectMariadb+4 more13500f Firmware A250 FirmwareCloud Volumes Ontap Mediator+10 moreJun 17, 2026 Mar 15, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The BN_mod_sqrt() function, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli. Internally this function is used when parsing certificates that contain elliptic cu...Show more |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Feb 18, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 MariaDB CONNECT Storage Engine Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of MariaDB. Authentication is requi...Show more |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Feb 18, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 MariaDB CONNECT Storage Engine Format String Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of MariaDB. Authentication is required to exploi...Show more |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Feb 18, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 MariaDB CONNECT Storage Engine Use-After-Free Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of MariaDB. Authentication is required to explo...Show more |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Feb 18, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 MariaDB CONNECT Storage Engine Stack-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of MariaDB. Authentication is requ...Show more |
3Debian FedoraprojectMariadb3Debian Linux FedoraMariadbJun 17, 2026 Feb 1, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used. |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Feb 1, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 MariaDB through 10.5.9 allows an application crash via certain long SELECT DISTINCT statements that improperly interact with storage-engine resource limitations for temporary data structures. |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Feb 1, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 MariaDB before 10.6.5 has a sql_lex.cc integer overflow, leading to an application crash. |
MariaDB before 10.6.2 allows an application crash because of mishandling of a pushdown from a HAVING clause to a WHERE clause. |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Feb 1, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 MariaDB through 10.5.9 allows a sql_parse.cc application crash because of incorrect used_tables expectations. |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Feb 1, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 MariaDB through 10.5.9 allows an application crash in sub_select_postjoin_aggr for a NULL value of aggr. |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Feb 1, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 MariaDB through 10.5.13 allows a ha_maria::extra application crash via certain SELECT statements. |
MariaDB through 10.5.9 allows a set_var.cc application crash via certain uses of an UPDATE statement in conjunction with a nested subquery. |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Feb 1, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 MariaDB through 10.5.9 allows an application crash in find_field_in_tables and find_order_in_list via an unused common table expression (CTE). |
2Fedoraproject Mariadb2Fedora MariadbJun 17, 2026 Jan 29, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 MariaDB before 10.7.2 allows an application crash because it does not recognize that SELECT_LEX::nest_level is local to each VIEW. |
save_window_function_values in MariaDB before 10.6.3 allows an application crash because of incorrect handling of with_window_func=true for a subquery. |
get_sort_by_table in MariaDB before 10.6.2 allows an application crash via certain subquery uses of ORDER BY. |
4Fedoraproject MariadbNetapp+1 more5Fedora MariadbMysql Server+2 moreJun 17, 2026 Oct 20, 2021 N/A· v4 5.5 MEDIUM· v3 5.5 MEDIUM· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.35 and prior and 8.0.26 and prior. Easily exploitable vulnerability allows high privileged attac...Show more |