Description
MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions 11.4 before 11.4.10 and 11.8 before 11.8.6 via a bug in JSON_SCHEMA_VALID() function. Under certain conditions it might be possible to turn the crash into a remote code execution. These conditions require tight control over memory layout which is generally only attainable in a lab environment. This issue is fixed in MariaDB 11.4.10, MariaDB 11.8.6, and MariaDB 12.2.2.
Scores
CVSS v3
8.5
EPSS
0.0010
EPSS Percentile
26.8%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-122
Status
published
Products (5)
mariadb/mariadb
12.1.2
mariadb/mariadb
11.4.1 - 11.4.10
MariaDB/server
>= 11.4.1, < 11.4.10
MariaDB/server
>= 11.8.1, < 11.8.6
MariaDB/server
>= 12.1.2, < 12.2.2
Published
Mar 20, 2026
Tracked Since
Mar 21, 2026