<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 14:50:31 +0000</lastBuildDate>
    <item>
      <title>ALSA-2023:5683 — Important: mariadb:10.5 security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2023:5683</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: Judy, AlmaLinux:8: galera, AlmaLinux:8: mariadb, AlmaLinux:8: mariadb-backup, AlmaLinux:8: mariadb-common, AlmaLinux:8: mariadb-devel, AlmaLinux:8: mariadb-embedded, AlmaLinux:8: mariadb-embedded-devel, AlmaLinux:8: mariadb-errmsg, AlmaLinux:8: mariadb-gssapi-server and 6 more&lt;/p&gt;
&lt;p&gt;MariaDB is a multi-user, multi-threaded SQL database server that is binary compatible with MySQL.&lt;/p&gt;
&lt;p&gt;The following packages have been upgraded to a later upstream version: galera
(26.4.14), mariadb (10.5.22).&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* mariadb: node crashes with Transport endpoint is not connected mysqld got signal 6 (CVE-2023-5157)
* mariadb: use-after-poison in prepare_inplace_add_virtual in handler0alter.cc (CVE-2022-32081)
* mariadb: assertion failure at table-&amp;gt;get_ref_count() == 0 in dict0dict.cc (CVE-2022-32082)
* mariadb: segmentation fault via the component sub_select (CVE-2022-32084)
* mariadb: server crash in st_select_lex_unit::exclude_level (CVE-2022-32089)
* mariadb: server crash in JOIN_CACHE::free or in copy_fields (CVE-2022-32091)
* mariadb: compress_write() fails to release mutex on failure (CVE-2022-38791)
* mariadb: NULL pointer dereference in spider_db_mbase::print_warnings() (CVE-2022-47015)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: Judy, AlmaLinux:8: galera, AlmaLinux:8: mariadb, AlmaLinux:8: mariadb-backup, AlmaLinux:8: mariadb-common, AlmaLinux:8: mariadb-devel, AlmaLinux:8: mariadb-embedded, AlmaLinux:8: mariadb-embedded-devel, AlmaLinux:8: mariadb-errmsg, AlmaLinux:8: mariadb-gssapi-server and 6 more&lt;/p&gt;
&lt;p&gt;MariaDB is a multi-user, multi-threaded SQL database server that is binary compatible with MySQL.&lt;/p&gt;
&lt;p&gt;The following packages have been upgraded to a later upstream version: galera
(26.4.14), mariadb (10.5.22).&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* mariadb: node crashes with Transport endpoint is not connected mysqld got signal 6 (CVE-2023-5157)
* mariadb: use-after-poison in prepare_inplace_add_virtual in handler0alter.cc (CVE-2022-32081)
* mariadb: assertion failure at table-&amp;gt;get_ref_count() == 0 in dict0dict.cc (CVE-2022-32082)
* mariadb: segmentation fault via the component sub_select (CVE-2022-32084)
* mariadb: server crash in st_select_lex_unit::exclude_level (CVE-2022-32089)
* mariadb: server crash in JOIN_CACHE::free or in copy_fields (CVE-2022-32091)
* mariadb: compress_write() fails to release mutex on failure (CVE-2022-38791)
* mariadb: NULL pointer dereference in spider_db_mbase::print_warnings() (CVE-2022-47015)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2023:5683</guid>
    </item>
    <item>
      <title>bdu:2022-04079</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-04079</link>
      <description>bdu:2022-04079</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-04079</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2022-32089 — CVE-2022-32089 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2022-32089</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2022-32089</guid>
    </item>
    <item>
      <title>BIT-mariadb-2022-32089</title>
      <link>https://cve.radiocsirt.org/vuln/bit-mariadb-2022-32089</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: mariadb&lt;/p&gt;
&lt;p&gt;MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: mariadb&lt;/p&gt;
&lt;p&gt;MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-mariadb-2022-32089</guid>
    </item>
    <item>
      <title>cnvd-2022-51593</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2022-51593</link>
      <description>cnvd-2022-51593</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2022-51593</guid>
    </item>
    <item>
      <title>EUVD-2026-17202</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-17202</link>
      <description>EUVD-2026-17202</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-17202</guid>
    </item>
    <item>
      <title>fkie_cve-2022-32089</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-32089</link>
      <description>&lt;p&gt;MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-32089</guid>
    </item>
    <item>
      <title>FSA-202302 — Festo: Several vulnerabilities in FactoryViews</title>
      <link>https://cve.radiocsirt.org/vuln/fsa-202302</link>
      <description>&lt;p&gt;FactoryViews bundles many third-party applications which are used in background processes to provide the software&amp;#39;s features. From time to time, vulnerabilities in these bundled applications are discovered. These are typically fixed in newer versions of FactoryViews by updating the bundled applications.&lt;/p&gt;
&lt;p&gt;FactoryViews versions up to and including 1.5.2 contain around 200 such vulnerabilities listed in this advisory.Version 1.6.0 is a security rollup release which includes updates to all bundled applications and fixes these vulnerabilities.&lt;/p&gt;
&lt;p&gt;At this time, FactoryViews Lite cannot be updated beyond version 1.1. FactoryViews 1.7 unifies the non-Lite and Lite versions and fixes these vulnerabilities for users of FactoryViews Lite.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;FactoryViews bundles many third-party applications which are used in background processes to provide the software&amp;#39;s features. From time to time, vulnerabilities in these bundled applications are discovered. These are typically fixed in newer versions of FactoryViews by updating the bundled applications.&lt;/p&gt;
&lt;p&gt;FactoryViews versions up to and including 1.5.2 contain around 200 such vulnerabilities listed in this advisory.Version 1.6.0 is a security rollup release which includes updates to all bundled applications and fixes these vulnerabilities.&lt;/p&gt;
&lt;p&gt;At this time, FactoryViews Lite cannot be updated beyond version 1.1. FactoryViews 1.7 unifies the non-Lite and Lite versions and fixes these vulnerabilities for users of FactoryViews Lite.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fsa-202302</guid>
    </item>
    <item>
      <title>GHSA-mvw8-35pm-hmgm</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-mvw8-35pm-hmgm</link>
      <description>&lt;p&gt;MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-mvw8-35pm-hmgm</guid>
    </item>
    <item>
      <title>gsd-2022-32089</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-32089</link>
      <description>gsd-2022-32089</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-32089</guid>
    </item>
    <item>
      <title>ICSA-26-027-02 — Festo Didactic SE MES PC</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-26-027-02</link>
      <description>&lt;p&gt;MES PCs shipped with Windows 10 come pre-installed with XAMPP. XAMPP is a bundle of third-party open-source applications including the Apache HTTP Server, the MariaDB database and more. From time to time, vulnerabilities in these applications are discovered. These are fixed in newer versions of XAMPP by updating the bundled applications.&lt;/p&gt;
&lt;p&gt;MES PCs shipped with Windows 10 include a copy of XAMPP which contains around 140 such vulnerabilities listed in this advisory. They can be fixed by replacing XAMPP with Festo Didactic&amp;#39;s Factory Control Panel application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MES PCs shipped with Windows 10 come pre-installed with XAMPP. XAMPP is a bundle of third-party open-source applications including the Apache HTTP Server, the MariaDB database and more. From time to time, vulnerabilities in these applications are discovered. These are fixed in newer versions of XAMPP by updating the bundled applications.&lt;/p&gt;
&lt;p&gt;MES PCs shipped with Windows 10 include a copy of XAMPP which contains around 140 such vulnerabilities listed in this advisory. They can be fixed by replacing XAMPP with Festo Didactic&amp;#39;s Factory Control Panel application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-26-027-02</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:12360-1 — libmariadbd-devel-10.9.3-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12360-1</link>
      <description>&lt;p&gt;libmariadbd-devel-10.9.3-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libmariadbd-devel-10.9.3-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:12360-1</guid>
    </item>
    <item>
      <title>RHSA-2023:6821 — Red Hat Security Advisory: mariadb:10.5 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:6821</link>
      <description>&lt;p&gt;mysql: Server: DML unspecified vulnerability (CPU Apr 2021) mysql: Server: DML unspecified vulnerability (CPU Apr 2021) mysql: InnoDB unspecified vulnerability (CPU Jul 2021) mysql: InnoDB unspecified vulnerability (CPU Jul 2021) mysql: InnoDB unspecified vulnerability (CPU Oct 2021) mariadb: Crash in get_sort_by_table() in subquery with ORDER BY having outer ref mariadb: save_window_function_values triggers an abort during IN subquery mariadb: Crash executing query with VIEW, aggregate and subquery mariadb: MariaDB allows an application crash in find_field_in_tables and find_order_in_list via an unused common table expression (CTE) mariadb: Crash in set_var.cc via certain UPDATE queries with nested subqueries mariadb: MariaDB through 10.5.13 allows a ha_maria::extra application crash via certain SELECT statements mariadb: MariaDB through 10.5.9 allows an application crash in sub_select_postjoin_aggr for a NULL value of aggr mariadb: MariaDB through 10.5.9 allows a sql_parse.cc application crash because of incorrect used_tables expectations mariadb: Crash caused by mishandling of a pushdown from a HAVING clause to a WHERE clause mariadb: Integer overflow in sql_lex.cc integer leading to crash mariadb: MariaDB through 10.5.9 allows an application crash via certain long SELECT DISTINCT statements mariadb: MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used mysql: InnoDB unspecified vulnerability (CPU Apr 20…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;mysql: Server: DML unspecified vulnerability (CPU Apr 2021) mysql: Server: DML unspecified vulnerability (CPU Apr 2021) mysql: InnoDB unspecified vulnerability (CPU Jul 2021) mysql: InnoDB unspecified vulnerability (CPU Jul 2021) mysql: InnoDB unspecified vulnerability (CPU Oct 2021) mariadb: Crash in get_sort_by_table() in subquery with ORDER BY having outer ref mariadb: save_window_function_values triggers an abort during IN subquery mariadb: Crash executing query with VIEW, aggregate and subquery mariadb: MariaDB allows an application crash in find_field_in_tables and find_order_in_list via an unused common table expression (CTE) mariadb: Crash in set_var.cc via certain UPDATE queries with nested subqueries mariadb: MariaDB through 10.5.13 allows a ha_maria::extra application crash via certain SELECT statements mariadb: MariaDB through 10.5.9 allows an application crash in sub_select_postjoin_aggr for a NULL value of aggr mariadb: MariaDB through 10.5.9 allows a sql_parse.cc application crash because of incorrect used_tables expectations mariadb: Crash caused by mishandling of a pushdown from a HAVING clause to a WHERE clause mariadb: Integer overflow in sql_lex.cc integer leading to crash mariadb: MariaDB through 10.5.9 allows an application crash via certain long SELECT DISTINCT statements mariadb: MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used mysql: InnoDB unspecified vulnerability (CPU Apr 20…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:6821</guid>
    </item>
    <item>
      <title>SUSE-RU-2023:3956-1 — Recommended update for mariadb104</title>
      <link>https://cve.radiocsirt.org/vuln/suse-ru-2023:3956-1</link>
      <description>&lt;p&gt;Recommended update for mariadb104&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Recommended update for mariadb104&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-ru-2023:3956-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-32089</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-32089</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: mariadb-10.0, Ubuntu:18.04:LTS: mariadb-10.1, Ubuntu:20.04:LTS: mariadb-10.3, Ubuntu:22.04:LTS: mariadb-10.6&lt;/p&gt;
&lt;p&gt;MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: mariadb-10.0, Ubuntu:18.04:LTS: mariadb-10.1, Ubuntu:20.04:LTS: mariadb-10.3, Ubuntu:22.04:LTS: mariadb-10.6&lt;/p&gt;
&lt;p&gt;MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-32089</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-0641 — MariaDB: Mehrere Schwachstellen ermöglichen Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0641</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in MariaDB ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in MariaDB ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0641</guid>
    </item>
  </channel>
</rss>
