Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
MariaDB Server Number Of NVD 399 CRITICAL 3 HIGH 70 MEDIUM 277 LOW 49
URL https://mariadb.org/
Explanation It is a relational database management system (RDBMS) derived from MySQL.
Paid support is available for MariaDB Enterprise Server.
Since many Linux distributions have replaced MySQL with MariaDB, it is now easier to use on Linux.

It has become one of the open source combinations called LAMP (Linux, Apache, MySQL [MariaDB], PHP).
Tag
  • 商用ライセンス有り
  • オープンソース
  • GPL v2

Add Information URL
No Type Name URL
1 https://downloads.mariadb.org/mariadb/+releases/
2 https://mariadb.com/wp-content/uploads/2019/07/mariadb-engineering-policies-v2-01_policy_1036.pdf
3 https://mariadb.com/downloads/
4 https://mariadb.com/kb/en/mariadb-server/

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
351 MariaDB 11.2 11.2.6 Nov. 1, 2024 June 20, 2023 0 0 0 0
352 MariaDB 11.1 11.1.6 Aug. 8, 2024 March 27, 2023 0 0 0 0
353 MariaDB 11.0 11.0.6 May 16, 2024 Dec. 27, 2022 June 30, 2024 0 0 0 0
354 MariaDB 10.11 10.11.13 May 22, 2025 Sept. 26, 2022 Feb. 28, 2028 0 0 1 0
355 MariaDB 10.10 10.10.7 Nov. 13, 2023 June 21, 2022 Nov. 30, 2023 0 0 1 0
356 MariaDB 10.9 10.9.8 Aug. 14, 2023 March 23, 2022 0 7 2 0
357 MariaDB 10.8 10.8.8 May 10, 2023 Dec. 21, 2021 0 14 2 0
358 MariaDB 10.7 10.7.8 Feb. 6, 2023 Sept. 17, 2021 Feb. 28, 2023 0 40 10 0
359 MariaDB 10.6 10.6.22 May 6, 2025 April 26, 2021 June 30, 2026 0 41 20 0
360 MariaDB 10.5 10.5.29 May 6, 2025 Dec. 3, 2019 June 24, 2025 1 43 30 0
361 MariaDB 10.4 10.4.34 May 16, 2024 July 2, 2019 July 2, 2022 1 44 46 2
362 MariaDB 10.3 10.3.39 May 10, 2023 May 25, 2018 May 25, 2023 2 35 63 3
363 MariaDB 10.2 10.2.44 May 20, 2022 May 23, 2017 May 23, 2022 2 31 99 6
364 MariaDB 10.1 10.1.48 Nov. 3, 2020 Oct. 17, 2015 Oct. 17, 2020 3 19 115 21
365 MariaDB 5.3 5.3.9 Jan. 1, 2000 0 10 23 1
366 MariaDB 5.2 5.2.9 Jan. 1, 2000 0 10 23 1
367 MariaDB 5.1 5.1.67 Jan. 1, 2000 0 13 34 5
368 MariaDB 2.5 2.5.1 Jan. 1, 2000 0 10 7 1
369 MariaDB 2.4 2.4.2 Jan. 1, 2000 0 10 7 1
370 MariaDB 2.3 2.3.1 Jan. 1, 2000 0 10 7 1
371 MariaDB 2.2 2.2.0 Jan. 1, 2000 0 10 7 1
372 MariaDB 2.1 2.13.0 Jan. 1, 2000 0 11 7 1
373 MariaDB 2.0 2.0.5 Jan. 1, 2000 0 10 7 1
374 MariaDB 1.0 1.0.2 Jan. 1, 2000 0 10 7 1
375 MariaDB 0.7 0.7.0 Jan. 1, 2000 0 10 7 1
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
351 -
2.8
LOW Unspecified vulnerability in Oracle MySQL 5.1.67 and earlier, 5.5.29 and earlier, and 5.6.10 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server… NVD-CWE-noinfo
CVE-2013-1506 cpe:2.3:a:mariadb:mariadb:*:* 5.5.0
10.0.0


5.5.30
10.0.2
2024-11-21 10:49
2013-04-17
Show GitHub Exploit DB Packet Storm
352 -
1.5
LOW Unspecified vulnerability in Oracle MySQL 5.5.30 and earlier and 5.6.9 and earlier allows local users to affect availability via unknown vectors related to Server Partition. NVD-CWE-noinfo
CVE-2013-1502 cpe:2.3:a:mariadb:mariadb:*:* 5.5.0
10.0.0


5.5.31
10.0.3
2024-11-21 10:49
2013-04-17
Show GitHub Exploit DB Packet Storm
353 -
5.0
MEDIUM MariaDB 5.5.x before 5.5.30, 5.3.x before 5.3.13, 5.2.x before 5.2.15, and 5.1.x before 5.1.68, and Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote attackers… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1861 cpe:2.3:a:mariadb:mariadb:*:* 5.5.0
10.0.0
5.5.0
10.0.0






5.5.32
10.0.4
5.5.32
10.0.4
2024-11-21 10:50
2013-03-29
Show GitHub Exploit DB Packet Storm
354 -
6.5
MEDIUM Multiple SQL injection vulnerabilities in the replication code in Oracle MySQL possibly before 5.5.29, and MariaDB 5.1.x through 5.1.62, 5.2.x through 5.2.12, 5.3.x through 5.3.7, and 5.5.x through 5… CWE-89
SQL Injection
CVE-2012-4414 cpe:2.3:a:mariadb:mariadb:5.5.25:*
cpe:2.3:a:mariadb:mariadb:5.5.24:*
cpe:2.3:a:mariadb:mariadb:5.5.23:*
cpe:2…
2024-11-21 10:42
2013-01-23
Show GitHub Exploit DB Packet Storm
355 -
6.8
MEDIUM Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows remote authenticated users to affect availability via unknown vectors related to S… NVD-CWE-noinfo
CVE-2013-0389 cpe:2.3:a:mariadb:mariadb:10.0.0:*
cpe:2.3:a:mariadb:mariadb:*:*
5.2.0
5.3.0
5.5.0
5.1.0






5.2.14
5.3.12
5.5.29
5.1.67
2024-11-21 10:47
2013-01-17
Show GitHub Exploit DB Packet Storm
356 -
6.8
MEDIUM Unspecified vulnerability in the Server component in Oracle MySQL 5.5.28 and earlier allows remote authenticated users to affect availability via unknown vectors related to Stored Procedure. NVD-CWE-noinfo
CVE-2013-0386 cpe:2.3:a:mariadb:mariadb:10.0.0:*
cpe:2.3:a:mariadb:mariadb:*:*
5.5.0 5.5.29 2024-11-21 10:47
2013-01-17
Show GitHub Exploit DB Packet Storm
357 -
6.6
MEDIUM Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows local users to affect confidentiality and integrity via unknown vectors related to… NVD-CWE-noinfo
CVE-2013-0385 cpe:2.3:a:mariadb:mariadb:10.0.0:*
cpe:2.3:a:mariadb:mariadb:*:*
5.2.0
5.3.0
5.5.0
5.1.0






5.2.14
5.3.12
5.5.29
5.1.67
2024-11-21 10:47
2013-01-17
Show GitHub Exploit DB Packet Storm
358 -
6.8
MEDIUM Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows remote authenticated users to affect availability via unknown vectors related to I… NVD-CWE-noinfo
CVE-2013-0384 cpe:2.3:a:mariadb:mariadb:10.0.0:*
cpe:2.3:a:mariadb:mariadb:*:*
5.2.0
5.3.0
5.5.0
5.1.0






5.2.14
5.3.12
5.5.29
5.1.67
2024-11-21 10:47
2013-01-17
Show GitHub Exploit DB Packet Storm
359 -
4.3
MEDIUM Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows remote attackers to affect availability via unknown vectors related to Server Lock… NVD-CWE-noinfo
CVE-2013-0383 cpe:2.3:a:mariadb:mariadb:10.0.0:*
cpe:2.3:a:mariadb:mariadb:*:*
5.2.0
5.3.0
5.5.0
5.1.0






5.2.14
5.3.12
5.5.29
5.1.67
2024-11-21 10:47
2013-01-17
Show GitHub Exploit DB Packet Storm
360 5.4
5.5
MEDIUM
Network
Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.1.28 and earlier, allows remote authenticated users to affect confidentiality and integrity via unknown vec… NVD-CWE-noinfo
CVE-2013-0375 cpe:2.3:a:mariadb:mariadb:*:* 5.2.0
5.3.0
5.1.0




5.2.14
5.3.12
5.1.67
2024-11-21 10:47
2013-01-17
Show GitHub Exploit DB Packet Storm