Количество 15
Количество 15
GHSA-9pjh-5hhw-65v9
path traversal in mbstream
CVE-2026-44171
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11.4.11, 11.8.1 to before 11.8.7, and 12.3.1, mbstream did not check for /../ in the path when unpacking the archive. A proper backup can never contain such paths, but a specially crafted archive could have caused mbstream to create files outside of the target-dir path. This issue has been patched in versions 10.6.26, 10.11.17, 11.4.11, 11.8.7, and 12.3.2.
CVE-2026-44171
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11.4.11, 11.8.1 to before 11.8.7, and 12.3.1, mbstream did not check for /../ in the path when unpacking the archive. A proper backup can never contain such paths, but a specially crafted archive could have caused mbstream to create files outside of the target-dir path. This issue has been patched in versions 10.6.26, 10.11.17, 11.4.11, 11.8.7, and 12.3.2.
CVE-2026-44171
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11.4.11, 11.8.1 to before 11.8.7, and 12.3.1, mbstream did not check for /../ in the path when unpacking the archive. A proper backup can never contain such paths, but a specially crafted archive could have caused mbstream to create files outside of the target-dir path. This issue has been patched in versions 10.6.26, 10.11.17, 11.4.11, 11.8.7, and 12.3.2.
CVE-2026-44171
MariaDB server is a community developed fork of MySQL server. From ver ...
RLSA-2026:33482
Important: mariadb:10.11 security, bug fix, and enhancement update
RLSA-2026:33464
Important: mariadb:10.11 security, bug fix, and enhancement update
RLSA-2026:33093
Important: mariadb10.11 security, bug fix, and enhancement update
RLSA-2026:33481
Important: mariadb:11.8 security, bug fix, and enhancement update
RLSA-2026:33412
Important: galera and mariadb11.8 security, bug fix, and enhancement update
ELSA-2026-33412
ELSA-2026-33412: galera and mariadb11.8 security, bug fix, and enhancement update (IMPORTANT)
SUSE-SU-2026:2282-1
Security update for mariadb
SUSE-SU-2026:2284-1
Security update for mariadb
openSUSE-SU-2026:20933-1
Security update for mariadb
SUSE-SU-2026:2330-1
Security update for mariadb
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-9pjh-5hhw-65v9 path traversal in mbstream | CVSS3: 6.3 | 0% Низкий | 2 месяца назад | |
CVE-2026-44171 MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11.4.11, 11.8.1 to before 11.8.7, and 12.3.1, mbstream did not check for /../ in the path when unpacking the archive. A proper backup can never contain such paths, but a specially crafted archive could have caused mbstream to create files outside of the target-dir path. This issue has been patched in versions 10.6.26, 10.11.17, 11.4.11, 11.8.7, and 12.3.2. | CVSS3: 6.3 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-44171 MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11.4.11, 11.8.1 to before 11.8.7, and 12.3.1, mbstream did not check for /../ in the path when unpacking the archive. A proper backup can never contain such paths, but a specially crafted archive could have caused mbstream to create files outside of the target-dir path. This issue has been patched in versions 10.6.26, 10.11.17, 11.4.11, 11.8.7, and 12.3.2. | CVSS3: 5.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-44171 MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11.4.11, 11.8.1 to before 11.8.7, and 12.3.1, mbstream did not check for /../ in the path when unpacking the archive. A proper backup can never contain such paths, but a specially crafted archive could have caused mbstream to create files outside of the target-dir path. This issue has been patched in versions 10.6.26, 10.11.17, 11.4.11, 11.8.7, and 12.3.2. | CVSS3: 6.3 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-44171 MariaDB server is a community developed fork of MySQL server. From ver ... | CVSS3: 6.3 | 0% Низкий | около 2 месяцев назад | |
RLSA-2026:33482 Important: mariadb:10.11 security, bug fix, and enhancement update | 26 дней назад | |||
RLSA-2026:33464 Important: mariadb:10.11 security, bug fix, and enhancement update | около 1 месяца назад | |||
RLSA-2026:33093 Important: mariadb10.11 security, bug fix, and enhancement update | 26 дней назад | |||
RLSA-2026:33481 Important: mariadb:11.8 security, bug fix, and enhancement update | 26 дней назад | |||
RLSA-2026:33412 Important: galera and mariadb11.8 security, bug fix, and enhancement update | 26 дней назад | |||
ELSA-2026-33412 ELSA-2026-33412: galera and mariadb11.8 security, bug fix, and enhancement update (IMPORTANT) | 15 дней назад | |||
SUSE-SU-2026:2282-1 Security update for mariadb | около 2 месяцев назад | |||
SUSE-SU-2026:2284-1 Security update for mariadb | около 2 месяцев назад | |||
openSUSE-SU-2026:20933-1 Security update for mariadb | около 2 месяцев назад | |||
SUSE-SU-2026:2330-1 Security update for mariadb | около 2 месяцев назад |
Уязвимостей на страницу