Логотип exploitDog
product: "mariadb"
Консоль
Логотип exploitDog

exploitDog

product: "mariadb"
MariaDB

MariaDBответвление от системы управления базами данных MySQL, разрабатываемое сообществом под лицензией GNU GPL.

Релизный цикл, информация об уязвимостях

Продукт: MariaDB
Вендор: mariadb

График релизов

10.610.710.810.910.1010.1111.011.111.211.311.411.511.611.711.812.02021202220232024202520262027202820292030

Недавние уязвимости MariaDB

Количество 2 144

redhat логотип

CVE-2016-5612

около 9 лет назад

Unspecified vulnerability in Oracle MySQL 5.5.50 and earlier, 5.6.31 and earlier, and 5.7.13 and earlier allows remote authenticated users to affect availability via vectors related to DML.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-5630

около 9 лет назад

Unspecified vulnerability in Oracle MySQL 5.6.31 and earlier and 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: InnoDB.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2016-8283

около 9 лет назад

Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 and earlier, and 5.7.14 and earlier allows remote authenticated users to affect availability via vectors related to Server: Types.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-7440

около 9 лет назад

The C software implementation of AES Encryption and Decryption in wolfSSL (formerly CyaSSL) before 3.9.10 makes it easier for local users to discover AES keys by leveraging cache-bank timing differences.

CVSS3: 5.1
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:2448-1

около 9 лет назад

Security update for mariadb

EPSS: Высокий
redhat логотип

CVE-2016-9843

около 9 лет назад

The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation.

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:2404-1

около 9 лет назад

Security update for mariadb

EPSS: Высокий
suse-cvrf логотип

SUSE-SU-2016:2395-1

около 9 лет назад

Security update for mariadb

EPSS: Высокий
nvd логотип

CVE-2016-6662

около 9 лет назад

Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5.7.15; MariaDB before 5.5.51, 10.0.x before 10.0.27, and 10.1.x before 10.1.17; and Percona Server before 5.5.51-38.1, 5.6.x before 5.6.32-78.0, and 5.7.x before 5.7.14-7 allow local users to create arbitrary configurations and bypass certain protection mechanisms by setting general_log_file to a my.cnf configuration. NOTE: this can be leveraged to execute arbitrary code with root privileges by setting malloc_lib. NOTE: the affected MySQL version information is from Oracle's October 2016 CPU. Oracle has not commented on third-party claims that the issue was silently patched in MySQL 5.5.52, 5.6.33, and 5.7.15.

CVSS3: 9.8
EPSS: Высокий
debian логотип

CVE-2016-6662

около 9 лет назад

Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5 ...

CVSS3: 9.8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
redhat логотип
CVE-2016-5612

Unspecified vulnerability in Oracle MySQL 5.5.50 and earlier, 5.6.31 and earlier, and 5.7.13 and earlier allows remote authenticated users to affect availability via vectors related to DML.

CVSS3: 6.5
2%
Низкий
около 9 лет назад
redhat логотип
CVE-2016-5630

Unspecified vulnerability in Oracle MySQL 5.6.31 and earlier and 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: InnoDB.

CVSS3: 4.9
2%
Низкий
около 9 лет назад
redhat логотип
CVE-2016-8283

Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 and earlier, and 5.7.14 and earlier allows remote authenticated users to affect availability via vectors related to Server: Types.

CVSS3: 4.3
0%
Низкий
около 9 лет назад
redhat логотип
CVE-2016-7440

The C software implementation of AES Encryption and Decryption in wolfSSL (formerly CyaSSL) before 3.9.10 makes it easier for local users to discover AES keys by leveraging cache-bank timing differences.

CVSS3: 5.1
0%
Низкий
около 9 лет назад
suse-cvrf логотип
openSUSE-SU-2016:2448-1

Security update for mariadb

90%
Высокий
около 9 лет назад
redhat логотип
CVE-2016-9843

The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation.

CVSS3: 9.8
9%
Низкий
около 9 лет назад
suse-cvrf логотип
SUSE-SU-2016:2404-1

Security update for mariadb

90%
Высокий
около 9 лет назад
suse-cvrf логотип
SUSE-SU-2016:2395-1

Security update for mariadb

90%
Высокий
около 9 лет назад
nvd логотип
CVE-2016-6662

Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5.7.15; MariaDB before 5.5.51, 10.0.x before 10.0.27, and 10.1.x before 10.1.17; and Percona Server before 5.5.51-38.1, 5.6.x before 5.6.32-78.0, and 5.7.x before 5.7.14-7 allow local users to create arbitrary configurations and bypass certain protection mechanisms by setting general_log_file to a my.cnf configuration. NOTE: this can be leveraged to execute arbitrary code with root privileges by setting malloc_lib. NOTE: the affected MySQL version information is from Oracle's October 2016 CPU. Oracle has not commented on third-party claims that the issue was silently patched in MySQL 5.5.52, 5.6.33, and 5.7.15.

CVSS3: 9.8
90%
Высокий
около 9 лет назад
debian логотип
CVE-2016-6662

Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5 ...

CVSS3: 9.8
90%
Высокий
около 9 лет назад

Уязвимостей на страницу


Поделиться