MariaDB has multiple security flaws
MariaDB has a CERT-Bund advisory for 6 vulnerabilities in versions before 11.8.7. An attacker can exploit multiple vulnerabilities in MariaDB to carry out an unspecified attack.
- Severity
- Not scoredNo CVSS score recorded
- Fix
- Fixed in 11.8.7Fix recorded today
- Affected versions
- before 11.8.7
- Affects
- MariaDB+4 more
- Exploited
- Not confirmedNo confirmation recorded
How it works
An attacker can exploit multiple vulnerabilities in MariaDB to carry out an unspecified attack.
What to do
Check your MariaDB version. If it is before 11.8.7, this advisory applies.
Update MariaDB to 11.8.7 or newer.
Technical details
Affected software: MariaDB, Linux, Sonstiges, UNIX, Windows
CERT-Bund describes MariaDB as a relationales Datenbanksystem, das anwendungskompatibel mit MySQL ist. An attacker can exploit multiple vulnerabilities in MariaDB to carry out an unspecified attack. The advisory tracks CVE-2026-44168, CVE-2026-44169, CVE-2026-44170, CVE-2026-44171, CVE-2026-44172, CVE-2026-44173. In CERT-Bund's CSAF data, affected versions are before 11.8.7, before 11.4.11, before 10.11.17, before 10.6.26, and the fixed version is 11.8.7, 11.4.11, 10.11.17, 10.6.26.
Affected operating systems listed by CERT-Bund: Linux, Sonstiges, UNIX, Windows.
References
- wid.cert-bund.de · wid-sec-w-2026-1597.json technical description
- mariadb.com · 10.6.26 (10.6) third party advisory
- mariadb.com · 10.11.17 (10.11) third party advisory
- mariadb.com · 11.4.11 (11.4) third party advisory
- mariadb.com · 11.8.7 (11.8) third party advisory
- lists.suse.com · 026602.html third party advisory
- lists.suse.com · 026600.html third party advisory
- lists.suse.com · 026678.html third party advisory
- lists.suse.com · 026741.html third party advisory
- bodhi.fedoraproject.org · FEDORA-2026-3fdd0e930d third party advisory
- bodhi.fedoraproject.org · FEDORA-2026-c39d84e105 third party advisory
- bodhi.fedoraproject.org · FEDORA-2026-0b7d84b1d6 third party advisory
- bodhi.fedoraproject.org · FEDORA-2026-efc64a64ec third party advisory
- ubuntu.com · USN-8536-1 third party advisory
- lists.suse.com · 027617.html third party advisory
- lists.suse.com · 027669.html third party advisory
- lists.suse.com · 027668.html third party advisory
- errata.build.resf.org · RLSA-2026:43505 third party advisory
- oss.oracle.com · 021221.html third party advisory
- access.redhat.com · RHSA-2026:43505 third party advisory
- linux.oracle.com · ELSA-2026-43505.html third party advisory
- lists.opensuse.org · IYZFJIEZJ7EIKIHUI47N3HRSZJS2O3NI third party advisory
- lists.suse.com · 027908.html third party advisory
- access.redhat.com · RHSA-2026:47772 third party advisory
- access.redhat.com · RHSA-2026:49522 third party advisory
- lists.opensuse.org · 2VXEIAKOIDQPQGLWLMUCGCJGRFKN4UJS third party advisory