Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
MariaDB Server Number Of NVD 399 CRITICAL 3 HIGH 70 MEDIUM 277 LOW 49
URL https://mariadb.org/
Explanation It is a relational database management system (RDBMS) derived from MySQL.
Paid support is available for MariaDB Enterprise Server.
Since many Linux distributions have replaced MySQL with MariaDB, it is now easier to use on Linux.

It has become one of the open source combinations called LAMP (Linux, Apache, MySQL [MariaDB], PHP).
Tag
  • 商用ライセンス有り
  • オープンソース
  • GPL v2

Add Information URL
No Type Name URL
1 https://downloads.mariadb.org/mariadb/+releases/
2 https://mariadb.com/wp-content/uploads/2019/07/mariadb-engineering-policies-v2-01_policy_1036.pdf
3 https://mariadb.com/downloads/
4 https://mariadb.com/kb/en/mariadb-server/

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
391 MariaDB 11.2 11.2.6 Nov. 1, 2024 June 20, 2023 0 0 0 0
392 MariaDB 11.1 11.1.6 Aug. 8, 2024 March 27, 2023 0 0 0 0
393 MariaDB 11.0 11.0.6 May 16, 2024 Dec. 27, 2022 June 30, 2024 0 0 0 0
394 MariaDB 10.11 10.11.13 May 22, 2025 Sept. 26, 2022 Feb. 28, 2028 0 0 1 0
395 MariaDB 10.10 10.10.7 Nov. 13, 2023 June 21, 2022 Nov. 30, 2023 0 0 1 0
396 MariaDB 10.9 10.9.8 Aug. 14, 2023 March 23, 2022 0 7 2 0
397 MariaDB 10.8 10.8.8 May 10, 2023 Dec. 21, 2021 0 14 2 0
398 MariaDB 10.7 10.7.8 Feb. 6, 2023 Sept. 17, 2021 Feb. 28, 2023 0 40 10 0
399 MariaDB 10.6 10.6.22 May 6, 2025 April 26, 2021 June 30, 2026 0 41 20 0
400 MariaDB 10.5 10.5.29 May 6, 2025 Dec. 3, 2019 June 24, 2025 1 43 30 0
401 MariaDB 10.4 10.4.34 May 16, 2024 July 2, 2019 July 2, 2022 1 44 46 2
402 MariaDB 10.3 10.3.39 May 10, 2023 May 25, 2018 May 25, 2023 2 35 63 3
403 MariaDB 10.2 10.2.44 May 20, 2022 May 23, 2017 May 23, 2022 2 31 99 6
404 MariaDB 10.1 10.1.48 Nov. 3, 2020 Oct. 17, 2015 Oct. 17, 2020 3 19 115 21
405 MariaDB 5.3 5.3.9 Jan. 1, 2000 0 10 23 1
406 MariaDB 5.2 5.2.9 Jan. 1, 2000 0 10 23 1
407 MariaDB 5.1 5.1.67 Jan. 1, 2000 0 13 34 5
408 MariaDB 2.5 2.5.1 Jan. 1, 2000 0 10 7 1
409 MariaDB 2.4 2.4.2 Jan. 1, 2000 0 10 7 1
410 MariaDB 2.3 2.3.1 Jan. 1, 2000 0 10 7 1
411 MariaDB 2.2 2.2.0 Jan. 1, 2000 0 10 7 1
412 MariaDB 2.1 2.13.0 Jan. 1, 2000 0 11 7 1
413 MariaDB 2.0 2.0.5 Jan. 1, 2000 0 10 7 1
414 MariaDB 1.0 1.0.2 Jan. 1, 2000 0 10 7 1
415 MariaDB 0.7 0.7.0 Jan. 1, 2000 0 10 7 1
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
391 -
4.0
MEDIUM Unspecified vulnerability in Oracle MySQL Server 5.1.62 and earlier, and 5.5.22 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer. NVD-CWE-noinfo
CVE-2012-1689 cpe:2.3:a:mariadb:mariadb:*:* 5.1.0
5.5.0


5.1.66
5.5.23
2024-11-21 10:37
2012-07-18
Show GitHub Exploit DB Packet Storm
392 -
4.0
MEDIUM Unspecified vulnerability in Oracle MySQL Server 5.1.62 and earlier and 5.5.23 and earlier allows remote authenticated users to affect availability, related to GIS Extension. NVD-CWE-noinfo
CVE-2012-0540 cpe:2.3:a:mariadb:mariadb:*:* 5.1.0
5.5.0


5.1.66
5.5.24
2024-11-21 10:35
2012-07-18
Show GitHub Exploit DB Packet Storm
393 -
5.1
MEDIUM sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, whe… CWE-287
Improper Authentication
CVE-2012-2122 cpe:2.3:a:mariadb:mariadb:5.5.22:*
cpe:2.3:a:mariadb:mariadb:5.5.21:*
cpe:2.3:a:mariadb:mariadb:5.5.20:*
cpe:2…
2024-11-21 10:38
2012-06-27
Show GitHub Exploit DB Packet Storm
394 -
6.8
MEDIUM Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors relate… NVD-CWE-noinfo
CVE-2012-1703 cpe:2.3:a:mariadb:mariadb:*:* 5.5.0
5.1.0


5.5.22
5.1.62
2024-11-21 10:37
2012-05-4
Show GitHub Exploit DB Packet Storm
395 -
4.0
MEDIUM Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.21 and earlier allows remote authenticated users to affect availability via unknown vectors related to Partition. NVD-CWE-noinfo
CVE-2012-1697 cpe:2.3:a:mariadb:mariadb:*:* 5.5.0 5.5.22 2024-11-21 10:37
2012-05-4
Show GitHub Exploit DB Packet Storm
396 -
4.0
MEDIUM Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors relate… NVD-CWE-noinfo
CVE-2012-1690 cpe:2.3:a:mariadb:mariadb:*:* 5.5.0
5.1.0


5.5.22
5.1.62
2024-11-21 10:37
2012-05-4
Show GitHub Exploit DB Packet Storm
397 -
4.0
MEDIUM Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability, related to Server DML. NVD-CWE-noinfo
CVE-2012-1688 cpe:2.3:a:mariadb:mariadb:*:* 5.5.0
5.1.0


5.5.22
5.1.62
2024-11-21 10:37
2012-05-4
Show GitHub Exploit DB Packet Storm
398 -
7.5
HIGH Multiple stack-based buffer overflows in the CertDecoder::GetName function in src/asn.cpp in TaoCrypt in yaSSL before 1.9.9, as used in mysqld in MySQL 5.0.x before 5.0.90, MySQL 5.1.x before 5.1.43,… CWE-787
 Out-of-bounds Write
CVE-2009-4484 cpe:2.3:a:mariadb:mariadb:*:* 5.1 5.1.42 2026-04-23 09:35
2009-12-31
Show GitHub Exploit DB Packet Storm
399 -
4.6
MEDIUM The mysqlaccess script in MySQL 4.0.23 and earlier, 4.1.x before 4.1.10, 5.0.x before 5.0.3, and other versions including 3.x, allows local users to overwrite arbitrary files or read temporary files … CWE-59
Link Following
CVE-2005-0004 cpe:2.3:a:mariadb:mariadb:*:* 5.5.0 5.5.66 2022-08-5 23:26
2005-04-14
Show GitHub Exploit DB Packet Storm