Search CVE reports


Toggle filters

1 – 10 of 1200 results


CVE-2023-52971

Medium priority
Needs evaluation

MariaDB Server 10.10 through 10.11.* and 11.0 through 11.4.* crashes in JOIN::fix_all_splittings_in_plan.

1 affected package

mariadb

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mariadb Needs evaluation Not in release Not in release
Show less packages

CVE-2023-52970

Medium priority
Needs evaluation

MariaDB Server 10.4 through 10.5.*, 10.6 through 10.6.*, 10.7 through 10.11.*, 11.0 through 11.0.*, and 11.1 through 11.4.* crashes in Item_direct_view_ref::derived_field_transformer_for_where.

1 affected package

mariadb

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mariadb Needs evaluation Not in release Not in release
Show less packages

CVE-2023-52969

Medium priority
Needs evaluation

MariaDB Server 10.4 through 10.5.*, 10.6 through 10.6.*, 10.7 through 10.11.*, and 11.0 through 11.0.* can sometimes crash with an empty backtrace log. This may be related to make_aggr_tables_info and optimize_stage2.

1 affected package

mariadb

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mariadb Needs evaluation Not in release Not in release
Show less packages

CVE-2023-52968

Medium priority
Needs evaluation

MariaDB Server 10.4 before 10.4.33, 10.5 before 10.5.24, 10.6 before 10.6.17, 10.7 through 10.11 before 10.11.7, 11.0 before 11.0.5, and 11.1 before 11.1.4 calls fix_fields_if_needed under mysql_derived_prepare when derived is not...

1 affected package

mariadb

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mariadb Needs evaluation Not in release Not in release
Show less packages

CVE-2025-21567

Medium priority
Needs evaluation

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with...

10 affected packages

mariadb, mariadb-10.0, mariadb-10.1, mariadb-10.3, mariadb-10.6...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mariadb Needs evaluation Not in release Not in release
mariadb-10.0 Not in release Not in release Not in release Needs evaluation
mariadb-10.1 Not in release Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation Not in release
mysql-5.5 Not in release Not in release Not in release
mysql-5.7 Not in release Not in release Not in release Not affected Not affected
mysql-8.0 Not affected Not affected Not affected
percona-server-5.6 Not in release Not in release Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release Not in release Needs evaluation
Show all 10 packages Show less packages

CVE-2025-21566

Medium priority
Needs evaluation

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network...

10 affected packages

mariadb, mariadb-10.0, mariadb-10.1, mariadb-10.3, mariadb-10.6...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mariadb Needs evaluation Not in release Not in release
mariadb-10.0 Not in release Not in release Not in release Needs evaluation
mariadb-10.1 Not in release Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation Not in release
mysql-5.5 Not in release Not in release Not in release
mysql-5.7 Not in release Not in release Not in release Not affected Not affected
mysql-8.0 Not affected Not affected Not affected
percona-server-5.6 Not in release Not in release Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release Not in release Needs evaluation
Show all 10 packages Show less packages

CVE-2025-21559

Medium priority

Some fixes available 4 of 13

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high...

10 affected packages

mariadb, mariadb-10.0, mariadb-10.1, mariadb-10.3, mariadb-10.6...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mariadb Needs evaluation Not in release Not in release
mariadb-10.0 Not in release Not in release Not in release Needs evaluation
mariadb-10.1 Not in release Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation Not in release
mysql-5.5 Not in release Not in release Not in release
mysql-5.7 Not in release Not in release Not in release Ignored Ignored
mysql-8.0 Fixed Fixed Fixed
percona-server-5.6 Not in release Not in release Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release Not in release Needs evaluation
Show all 10 packages Show less packages

CVE-2025-21555

Medium priority

Some fixes available 4 of 13

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high...

10 affected packages

mariadb, mariadb-10.0, mariadb-10.1, mariadb-10.3, mariadb-10.6...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mariadb Needs evaluation Not in release Not in release
mariadb-10.0 Not in release Not in release Not in release Needs evaluation
mariadb-10.1 Not in release Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation Not in release
mysql-5.5 Not in release Not in release Not in release
mysql-5.7 Not in release Not in release Not in release Ignored Ignored
mysql-8.0 Fixed Fixed Fixed
percona-server-5.6 Not in release Not in release Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release Not in release Needs evaluation
Show all 10 packages Show less packages

CVE-2025-21546

Medium priority

Some fixes available 4 of 13

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily...

10 affected packages

mariadb, mariadb-10.0, mariadb-10.1, mariadb-10.3, mariadb-10.6...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mariadb Needs evaluation Not in release Not in release
mariadb-10.0 Not in release Not in release Not in release Needs evaluation
mariadb-10.1 Not in release Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation Not in release
mysql-5.5 Not in release Not in release Not in release
mysql-5.7 Not in release Not in release Not in release Ignored Ignored
mysql-8.0 Fixed Fixed Fixed
percona-server-5.6 Not in release Not in release Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release Not in release Needs evaluation
Show all 10 packages Show less packages

CVE-2025-21543

Medium priority
Needs evaluation

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Packaging). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows...

10 affected packages

mariadb, mariadb-10.0, mariadb-10.1, mariadb-10.3, mariadb-10.6...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mariadb Needs evaluation Not in release Not in release
mariadb-10.0 Not in release Not in release Not in release Needs evaluation
mariadb-10.1 Not in release Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation Not in release
mysql-5.5 Not in release Not in release Not in release
mysql-5.7 Not in release Not in release Not in release Not affected Not affected
mysql-8.0 Not affected Not affected Not affected
percona-server-5.6 Not in release Not in release Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release Not in release Needs evaluation
Show all 10 packages Show less packages