[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

251139

 
 

909

 
 

196159

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2022:1010-01 -- Redhat rh-mariadb103-galera, rh-mariadb103-mariadb

ID: oval:org.secpod.oval:def:506799Date: (C)2022-10-20   (M)2023-08-02
Class: PATCHFamily: unix




MariaDB is a multi-user, multi-threaded SQL database server. For all practical purposes, MariaDB is binary-compatible with MySQL. The following packages have been upgraded to a later upstream version: rh-mariadb103-mariadb , rh-mariadb103-galera . Security Fix: * mysql: Server: DML unspecified vulnerability * mysql: Server: DML unspecified vulnerability * mysql: InnoDB unspecified vulnerability * mysql: InnoDB unspecified vulnerability * mysql: InnoDB unspecified vulnerability * mariadb: Integer overflow in sql_lex.cc integer leading to crash * mariadb: Crash in get_sort_by_table in subquery with ORDER BY having outer ref * mariadb: Crash in set_var.cc via certain UPDATE queries with nested subqueries * mariadb: Crash caused by mishandling of a pushdown from a HAVING clause to a WHERE clause * mariadb: No password masking in audit log when using ALTER USER usergt; IDENTIFIED BY passwordgt; command For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Bug Fix: * rh-mariadb103: /etc/security/user_map.conf getting overwritten with mariadb-server upgrade * mysqld got signal 6, quot;WSREP: invalid state ROLLED_BACK quot; * MariaDB logrotate leads to quot;gzip: stdin: file size changed while zippingquot; * Galera doesn"t work without "procps-ng" package [rhscl-3]

Platform:
Red Hat Enterprise Linux 7
Product:
rh-mariadb103-galera
rh-mariadb103-mariadb
Reference:
RHSA-2022:1010-01
CVE-2021-2154
CVE-2021-2166
CVE-2021-2372
CVE-2021-2389
CVE-2021-35604
CVE-2021-46657
CVE-2021-46662
CVE-2021-46666
CVE-2021-46667
CVE    9
CVE-2021-35604
CVE-2021-2154
CVE-2021-2372
CVE-2021-2389
...

© SecPod Technologies