MariaDB — ответвление от системы управления базами данных MySQL, разрабатываемое сообществом под лицензией GNU GPL.
Релизный цикл, информация об уязвимостях
График релизов
Количество 2 144
GHSA-v9vv-8xcq-rpqg
An issue in MYSQL MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function.
GHSA-xr59-q2m8-w439
Insecure permissions in the sys_exec function of Oracle MYSQL MariaDB v10.5 allows authenticated attackers to execute arbitrary commands with elevated privileges.
GHSA-jj42-9w8m-9979
MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability.

CVE-2024-27766
An issue in MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.
CVE-2024-27766
An issue in MariaDB v.11.1 allows a remote attacker to execute arbitra ...

CVE-2023-39593
Insecure permissions in the sys_exec function of MariaDB v10.5 allows authenticated attackers to execute arbitrary commands with elevated privileges. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.
CVE-2023-39593
Insecure permissions in the sys_exec function of MariaDB v10.5 allows ...

CVE-2023-26785
MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability via UDF Code in a Shared Object File, followed by a "create function" statement. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.
CVE-2023-26785
MariaDB v10.5 was discovered to contain a remote code execution (RCE) ...

CVE-2023-26785
MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability via UDF Code in a Shared Object File, followed by a "create function" statement. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
---|---|---|---|---|
GHSA-v9vv-8xcq-rpqg An issue in MYSQL MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. | CVSS3: 5.7 | 16% Средний | 10 месяцев назад | |
GHSA-xr59-q2m8-w439 Insecure permissions in the sys_exec function of Oracle MYSQL MariaDB v10.5 allows authenticated attackers to execute arbitrary commands with elevated privileges. | CVSS3: 5.6 | 1% Низкий | 10 месяцев назад | |
GHSA-jj42-9w8m-9979 MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability. | CVSS3: 9.8 | 14% Средний | 10 месяцев назад | |
![]() | CVE-2024-27766 An issue in MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed. | CVSS3: 5.7 | 16% Средний | 10 месяцев назад |
CVE-2024-27766 An issue in MariaDB v.11.1 allows a remote attacker to execute arbitra ... | CVSS3: 5.7 | 16% Средний | 10 месяцев назад | |
![]() | CVE-2023-39593 Insecure permissions in the sys_exec function of MariaDB v10.5 allows authenticated attackers to execute arbitrary commands with elevated privileges. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed. | CVSS3: 5.6 | 1% Низкий | 10 месяцев назад |
CVE-2023-39593 Insecure permissions in the sys_exec function of MariaDB v10.5 allows ... | CVSS3: 5.6 | 1% Низкий | 10 месяцев назад | |
![]() | CVE-2023-26785 MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability via UDF Code in a Shared Object File, followed by a "create function" statement. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed. | CVSS3: 9.8 | 14% Средний | 10 месяцев назад |
CVE-2023-26785 MariaDB v10.5 was discovered to contain a remote code execution (RCE) ... | CVSS3: 9.8 | 14% Средний | 10 месяцев назад | |
![]() | CVE-2023-26785 MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability via UDF Code in a Shared Object File, followed by a "create function" statement. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed. | CVSS3: 9.8 | 14% Средний | 10 месяцев назад |
Уязвимостей на страницу