Логотип exploitDog
product: "mariadb"
Консоль
Логотип exploitDog

exploitDog

product: "mariadb"
MariaDB

MariaDBответвление от системы управления базами данных MySQL, разрабатываемое сообществом под лицензией GNU GPL.

Релизный цикл, информация об уязвимостях

Продукт: MariaDB
Вендор: mariadb

График релизов

10.610.710.810.910.1010.1111.011.111.211.311.411.511.611.711.812.012.12021202220232024202520262027202820292030

Недавние уязвимости MariaDB

Количество 2 147

ubuntu логотип

CVE-2012-2122

больше 13 лет назад

sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, when running in certain environments with certain implementations of the memcmp function, allows remote attackers to bypass authentication by repeatedly authenticating with the same incorrect password, which eventually causes a token comparison to succeed due to an improperly-checked return value.

CVSS2: 5.1
EPSS: Критический
redhat логотип

CVE-2012-2122

больше 13 лет назад

sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, when running in certain environments with certain implementations of the memcmp function, allows remote attackers to bypass authentication by repeatedly authenticating with the same incorrect password, which eventually causes a token comparison to succeed due to an improperly-checked return value.

CVSS2: 7.5
EPSS: Критический
nvd логотип

CVE-2012-1703

больше 13 лет назад

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1690.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2012-1703

больше 13 лет назад

Unspecified vulnerability in the MySQL Server component in Oracle MySQ ...

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2012-1697

больше 13 лет назад

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.21 and earlier allows remote authenticated users to affect availability via unknown vectors related to Partition.

CVSS2: 4
EPSS: Низкий
debian логотип

CVE-2012-1697

больше 13 лет назад

Unspecified vulnerability in the MySQL Server component in Oracle MySQ ...

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2012-1690

больше 13 лет назад

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1703.

CVSS2: 4
EPSS: Низкий
debian логотип

CVE-2012-1690

больше 13 лет назад

Unspecified vulnerability in the MySQL Server component in Oracle MySQ ...

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2012-1688

больше 13 лет назад

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability, related to Server DML.

CVSS2: 4
EPSS: Низкий
debian логотип

CVE-2012-1688

больше 13 лет назад

Unspecified vulnerability in the MySQL Server component in Oracle MySQ ...

CVSS2: 4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
ubuntu логотип
CVE-2012-2122

sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, when running in certain environments with certain implementations of the memcmp function, allows remote attackers to bypass authentication by repeatedly authenticating with the same incorrect password, which eventually causes a token comparison to succeed due to an improperly-checked return value.

CVSS2: 5.1
94%
Критический
больше 13 лет назад
redhat логотип
CVE-2012-2122

sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, when running in certain environments with certain implementations of the memcmp function, allows remote attackers to bypass authentication by repeatedly authenticating with the same incorrect password, which eventually causes a token comparison to succeed due to an improperly-checked return value.

CVSS2: 7.5
94%
Критический
больше 13 лет назад
nvd логотип
CVE-2012-1703

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1690.

CVSS2: 6.8
1%
Низкий
больше 13 лет назад
debian логотип
CVE-2012-1703

Unspecified vulnerability in the MySQL Server component in Oracle MySQ ...

CVSS2: 6.8
1%
Низкий
больше 13 лет назад
nvd логотип
CVE-2012-1697

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.21 and earlier allows remote authenticated users to affect availability via unknown vectors related to Partition.

CVSS2: 4
1%
Низкий
больше 13 лет назад
debian логотип
CVE-2012-1697

Unspecified vulnerability in the MySQL Server component in Oracle MySQ ...

CVSS2: 4
1%
Низкий
больше 13 лет назад
nvd логотип
CVE-2012-1690

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1703.

CVSS2: 4
1%
Низкий
больше 13 лет назад
debian логотип
CVE-2012-1690

Unspecified vulnerability in the MySQL Server component in Oracle MySQ ...

CVSS2: 4
1%
Низкий
больше 13 лет назад
nvd логотип
CVE-2012-1688

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability, related to Server DML.

CVSS2: 4
1%
Низкий
больше 13 лет назад
debian логотип
CVE-2012-1688

Unspecified vulnerability in the MySQL Server component in Oracle MySQ ...

CVSS2: 4
1%
Низкий
больше 13 лет назад

Уязвимостей на страницу


Поделиться