Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
MariaDB Server Number Of NVD 399 CRITICAL 3 HIGH 70 MEDIUM 277 LOW 49
URL https://mariadb.org/
Explanation It is a relational database management system (RDBMS) derived from MySQL.
Paid support is available for MariaDB Enterprise Server.
Since many Linux distributions have replaced MySQL with MariaDB, it is now easier to use on Linux.

It has become one of the open source combinations called LAMP (Linux, Apache, MySQL [MariaDB], PHP).
Tag
  • 商用ライセンス有り
  • オープンソース
  • GPL v2

Add Information URL
No Type Name URL
1 https://downloads.mariadb.org/mariadb/+releases/
2 https://mariadb.com/wp-content/uploads/2019/07/mariadb-engineering-policies-v2-01_policy_1036.pdf
3 https://mariadb.com/downloads/
4 https://mariadb.com/kb/en/mariadb-server/

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
271 MariaDB 11.2 11.2.6 Nov. 1, 2024 June 20, 2023 0 0 0 0
272 MariaDB 11.1 11.1.6 Aug. 8, 2024 March 27, 2023 0 0 0 0
273 MariaDB 11.0 11.0.6 May 16, 2024 Dec. 27, 2022 June 30, 2024 0 0 0 0
274 MariaDB 10.11 10.11.13 May 22, 2025 Sept. 26, 2022 Feb. 28, 2028 0 0 1 0
275 MariaDB 10.10 10.10.7 Nov. 13, 2023 June 21, 2022 Nov. 30, 2023 0 0 1 0
276 MariaDB 10.9 10.9.8 Aug. 14, 2023 March 23, 2022 0 7 2 0
277 MariaDB 10.8 10.8.8 May 10, 2023 Dec. 21, 2021 0 14 2 0
278 MariaDB 10.7 10.7.8 Feb. 6, 2023 Sept. 17, 2021 Feb. 28, 2023 0 40 10 0
279 MariaDB 10.6 10.6.22 May 6, 2025 April 26, 2021 June 30, 2026 0 41 20 0
280 MariaDB 10.5 10.5.29 May 6, 2025 Dec. 3, 2019 June 24, 2025 1 43 30 0
281 MariaDB 10.4 10.4.34 May 16, 2024 July 2, 2019 July 2, 2022 1 44 46 2
282 MariaDB 10.3 10.3.39 May 10, 2023 May 25, 2018 May 25, 2023 2 35 63 3
283 MariaDB 10.2 10.2.44 May 20, 2022 May 23, 2017 May 23, 2022 2 31 99 6
284 MariaDB 10.1 10.1.48 Nov. 3, 2020 Oct. 17, 2015 Oct. 17, 2020 3 19 115 21
285 MariaDB 5.3 5.3.9 Jan. 1, 2000 0 10 23 1
286 MariaDB 5.2 5.2.9 Jan. 1, 2000 0 10 23 1
287 MariaDB 5.1 5.1.67 Jan. 1, 2000 0 13 34 5
288 MariaDB 2.5 2.5.1 Jan. 1, 2000 0 10 7 1
289 MariaDB 2.4 2.4.2 Jan. 1, 2000 0 10 7 1
290 MariaDB 2.3 2.3.1 Jan. 1, 2000 0 10 7 1
291 MariaDB 2.2 2.2.0 Jan. 1, 2000 0 10 7 1
292 MariaDB 2.1 2.13.0 Jan. 1, 2000 0 11 7 1
293 MariaDB 2.0 2.0.5 Jan. 1, 2000 0 10 7 1
294 MariaDB 1.0 1.0.2 Jan. 1, 2000 0 10 7 1
295 MariaDB 0.7 0.7.0 Jan. 1, 2000 0 10 7 1
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
271 -
4.3
MEDIUM Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect confidentiality via vectors related to C API SSL CERTIFICATE HANDLING. NVD-CWE-noinfo
CVE-2014-6559 cpe:2.3:a:mariadb:mariadb:*:* 10.0.0
5.5.0


10.0.15
5.5.40
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm
272 -
6.5
MEDIUM Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier and 5.6.20 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related… NVD-CWE-noinfo
CVE-2014-6555 cpe:2.3:a:mariadb:mariadb:*:* 10.0.0
5.5.0


10.0.15
5.5.40
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm
273 -
2.1
LOW Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows local users to affect confidentiality via vectors related to CLIENT:MYSQLADMIN. NVD-CWE-noinfo
CVE-2014-6551 cpe:2.3:a:mariadb:mariadb:*:* 10.0.0
5.5.0


10.0.13
5.5.39
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm
274 -
6.5
MEDIUM Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via vectors relat… NVD-CWE-noinfo
CVE-2014-6530 cpe:2.3:a:mariadb:mariadb:*:* 10.0.0
5.5.0


10.0.13
5.5.39
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm
275 -
4.0
MEDIUM Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:DDL. NVD-CWE-noinfo
CVE-2014-6520 cpe:2.3:a:mariadb:mariadb:*:* 10.0.0
5.5.0


10.0.13
5.5.39
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm
276 -
4.3
MEDIUM Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via vectors relat… NVD-CWE-noinfo
CVE-2014-6507 cpe:2.3:a:mariadb:mariadb:*:* 10.0.0
5.5.0


10.0.15
5.5.40
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm
277 -
4.0
MEDIUM Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to SERVER:MEMORY STORAGE ENGI… NVD-CWE-noinfo
CVE-2014-6505 cpe:2.3:a:mariadb:mariadb:*:* 10.0.0
5.5.0


10.0.13
5.5.39
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm
278 -
7.5
HIGH Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to SERV… NVD-CWE-noinfo
CVE-2014-6500 cpe:2.3:a:mariadb:mariadb:*:* 10.0.0
5.5.0


10.0.15
5.5.40
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm
279 -
4.3
MEDIUM Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulner… NVD-CWE-noinfo
CVE-2014-6496 cpe:2.3:a:mariadb:mariadb:*:* 10.0.0
5.5.0


10.0.15
5.5.40
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm
280 -
4.3
MEDIUM Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote attackers to affect availability via vectors related to SERVER:SSL:yaSSL. NVD-CWE-noinfo
CVE-2014-6495 cpe:2.3:a:mariadb:mariadb:*:* 10.0.0
5.5.0


10.0.13
5.5.39
2024-11-21 11:14
2014-10-16
Show GitHub Exploit DB Packet Storm