First published: Thu Oct 17 2024(Updated: )
An issue in MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ariadne CMS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-27766 is currently under dispute, as it involves execution of arbitrary code without crossing privilege boundaries.
To address CVE-2024-27766, ensure your MariaDB version is updated to the latest patch that addresses this vulnerability.
CVE-2024-27766 affects users of MariaDB v.11.1, particularly those utilizing the lib_mysqludf_sys.so function.
CVE-2024-27766 allows a remote attacker to execute arbitrary code, potentially compromising server integrity.
Currently, there are no specific workarounds mentioned for CVE-2024-27766, but staying updated can help mitigate risks.