CVE-2024-27766: MariaDB

Medium severity, CVSS 5.7. EPSS: 1.3% chance of exploitation in the next 30 days.

An issue in MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.

Affected products

  • MariaDB MariaDB: version 11.1.0 only

Published 2024-10-17. Last modified 2026-06-17.