Vulnerabilities > Mariadb > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-04-14 CVE-2022-27446 Unspecified vulnerability in Mariadb
MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_cmpfunc.h.
network
low complexity
mariadb
5.0
2022-04-14 CVE-2022-27451 Unspecified vulnerability in Mariadb
MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/field_conv.cc.
network
low complexity
mariadb
5.0
2022-04-14 CVE-2022-27455 Use After Free vulnerability in Mariadb
MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component my_wildcmp_8bit_impl at /strings/ctype-simple.c.
network
low complexity
mariadb CWE-416
5.0
2022-04-14 CVE-2022-27457 Use After Free vulnerability in Mariadb
MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component my_mb_wc_latin1 at /strings/ctype-latin1.c.
network
low complexity
mariadb CWE-416
5.0
2022-04-12 CVE-2022-27382 Reachable Assertion vulnerability in Mariadb
MariaDB Server v10.7 and below was discovered to contain a segmentation fault via the component Item_field::used_tables/update_depend_map_for_order.
network
low complexity
mariadb CWE-617
5.0
2022-04-12 CVE-2022-27385 SQL Injection vulnerability in Mariadb
An issue in the component Used_tables_and_const_cache::used_tables_and_const_cache_join of MariaDB Server v10.7 and below was discovered to allow attackers to cause a Denial of Service (DoS) via specially crafted SQL statements.
network
low complexity
mariadb CWE-89
5.0
2022-02-01 CVE-2021-46661 MariaDB through 10.5.9 allows an application crash in find_field_in_tables and find_order_in_list via an unused common table expression (CTE).
local
low complexity
mariadb fedoraproject
5.5
2022-02-01 CVE-2021-46663 MariaDB through 10.5.13 allows a ha_maria::extra application crash via certain SELECT statements.
local
low complexity
mariadb fedoraproject
5.5
2022-02-01 CVE-2021-46664 NULL Pointer Dereference vulnerability in multiple products
MariaDB through 10.5.9 allows an application crash in sub_select_postjoin_aggr for a NULL value of aggr.
local
low complexity
mariadb fedoraproject CWE-476
5.5
2022-02-01 CVE-2021-46665 MariaDB through 10.5.9 allows a sql_parse.cc application crash because of incorrect used_tables expectations.
local
low complexity
mariadb fedoraproject
5.5