VYPR

rpm package

suse/mariadb&distro=SUSE Linux Enterprise Server for SAP Applications 15 SP3

pkg:rpm/suse/mariadb&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3

Vulnerabilities (9)

  • CVE-2025-13699HigDec 23, 2025
    affected < 10.5.29-150300.3.55.1fixed 10.5.29-150300.3.55.1

    MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but

  • CVE-2025-30722Apr 15, 2025
    affected < 10.5.29-150300.3.55.1fixed 10.5.29-150300.3.55.1

    Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple proto

  • CVE-2025-30693Apr 15, 2025
    affected < 10.5.29-150300.3.55.1fixed 10.5.29-150300.3.55.1

    Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to comp

  • CVE-2023-52970MedMar 8, 2025
    affected < 10.5.29-150300.3.55.1fixed 10.5.29-150300.3.55.1

    MariaDB Server 10.4 through 10.5.*, 10.6 through 10.6.*, 10.7 through 10.11.*, 11.0 through 11.0.*, and 11.1 through 11.4.* crashes in Item_direct_view_ref::derived_field_transformer_for_where.

  • CVE-2023-52969MedMar 8, 2025
    affected < 10.5.29-150300.3.55.1fixed 10.5.29-150300.3.55.1

    MariaDB Server 10.4 through 10.5.*, 10.6 through 10.6.*, 10.7 through 10.11.*, and 11.0 through 11.0.* can sometimes crash with an empty backtrace log. This may be related to make_aggr_tables_info and optimize_stage2.

  • CVE-2025-21490Jan 21, 2025
    affected < 10.5.29-150300.3.55.1fixed 10.5.29-150300.3.55.1

    Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto

  • CVE-2024-21096Apr 16, 2024
    affected < 10.5.26-150300.3.46.1fixed 10.5.26-150300.3.46.1

    Vulnerability in the MySQL Server product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MyS

  • CVE-2023-22084Oct 17, 2023
    affected < 10.5.23-150300.3.38.1fixed 10.5.23-150300.3.38.1

    Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.43 and prior, 8.0.34 and prior and 8.1.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to c

  • CVE-2022-47015Jan 20, 2023
    affected < 10.5.20-150300.3.28.1fixed 10.5.20-150300.3.28.1

    MariaDB Server before 10.3.34 thru 10.9.3 is vulnerable to Denial of Service. It is possible for function spider_db_mbase::print_warnings to dereference a null pointer.