MariaDB: 5.2.14 → 10.3.36
MariaDB · upgrade impact · Official site ↗
Fixed by upgrading to 10.3.36 iVulnerabilities that affect 5.2.14 but no longer affect 10.3.36 — the security gain from this upgrade, by exploited status then exploitation probability.
Exploited first, then by exploitation probability (EPSS).
CVE-2014-0001 HIGH EPSS 21% ✓ cleared in 10.3.36 CVE-2017-3302 HIGH EPSS 3% ✓ cleared in 10.3.36 CVE-2023-5157 HIGH EPSS 1% ✓ cleared in 10.3.36 CVE-2017-15365 HIGH EPSS 1% ✓ cleared in 10.3.36 CVE-2016-0610 LOW EPSS 1% ✓ cleared in 10.3.36 CVE-2021-46669 HIGH EPSS 0% ✓ cleared in 10.3.36 CVE-2016-0616 MEDIUM EPSS 0% ✓ cleared in 10.3.36 CVE-2015-2325 HIGH EPSS 0% ✓ cleared in 10.3.36 CVE-2022-27449 HIGH EPSS 0% ✓ cleared in 10.3.36 CVE-2022-27385 HIGH EPSS 0% ✓ cleared in 10.3.36 CVE-2020-28912 HIGH EPSS 0% ✓ cleared in 10.3.36 CVE-2021-46666 MEDIUM EPSS 0% ✓ cleared in 10.3.36 CVE-2022-31624 MEDIUM EPSS 0% ✓ cleared in 10.3.36 CVE-2021-46667 MEDIUM EPSS 0% ✓ cleared in 10.3.36 CVE-2022-31622 MEDIUM EPSS 0% ✓ cleared in 10.3.36 CVE-2022-31621 MEDIUM EPSS 0% ✓ cleared in 10.3.36 CVE-2022-31623 MEDIUM EPSS 0% ✓ cleared in 10.3.36 CVE-2017-15945 HIGH EPSS 0% ✓ cleared in 10.3.36Still open in 10.3.36 iKnown vulnerabilities that affect 10.3.36 too — upgrading to it does not clear these.
These affect 10.3.36 as well — a later release may be needed.
CVE-2022-47015 MEDIUM EPSS 0% → fixed in 10.11.3 CVE-2026-35549 MEDIUM EPSS 0% → fixed in 12.2.2 CVE-2026-3494 MEDIUM EPSS 0% → see advisory