CVE-2026-32710 Details
Description
MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions 11.4 before 11.4.10 and 11.8 before 11.8.6 via a bug in JSON_SCHEMA_VALID() function. Under certain conditions it might be possible to turn the crash into a remote code execution. These conditions require tight control over memory layout which is generally only attainable in a lab environment. This issue is fixed in MariaDB 11.4.10, MariaDB 11.8.6, and MariaDB 12.2.2.
A heap-based buffer overflow vulnerability has been identified in the MariaDB server, specifically in versions 11.4 prior to 11.4.10, 11.8 prior to 11.8.6, and 12.1.2. This vulnerability allows an authenticated user to crash the server by exploiting a bug in the JSON_SCHEMA_VALID() function. Under certain conditions, which typically require precise control over memory layout achievable only in a lab environment, this crash could be manipulated to execute remote code.
Users can upgrade to MariaDB versions 11.4.10, 11.8.6, or 12.2.2 to address this vulnerability.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Mar 26, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/MariaDB/server/security/advisories/GHSA-4rj5-2227-9wgc | [email protected] | Vendor Advisory |
| https://jira.mariadb.org/browse/MDEV-38356 | [email protected] | Issue TrackingVendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-122 | Heap-based Buffer Overflow | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| mariadb mariadb | >= 11.4.1, < 11.4.10 >= 11.8.1, < 11.8.6 12.1.2 |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Mar 31, 2026 | Initial Analysis | [email protected] |
| Mar 20, 2026 | New CVE Received | [email protected] |