Unrated severityNVD Advisory· Published Oct 17, 2024· Updated Oct 20, 2024
CVE-2024-27766
CVE-2024-27766
Description
An issue in MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.
Affected products
4- MariaDB/MariaDBdescription
- osv-coords3 versions
>= 11.1.0, < 11.1.5+ 2 more
- (no CPE)range: >= 11.1.0, < 11.1.5
- (no CPE)range: >= 11.1.0, < 11.4.8
- (no CPE)range: >= 11.1.0, < 11.3.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.