[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2020:5500-01 -- Redhat Judy, galera, mariadb

ID: oval:org.secpod.oval:def:69627Date: (C)2021-03-05   (M)2023-11-13
Class: PATCHFamily: unix




MariaDB is a multi-user, multi-threaded SQL database server that is binary compatible with MySQL. The following packages have been upgraded to a later upstream version: mariadb , galera . Security Fix: * mariadb: Insufficient SST method name check leading to code injection in mysql-wsrep * mysql: InnoDB unspecified vulnerability * mysql: Server: Optimizer unspecified vulnerability * mysql: C API unspecified vulnerability * mysql: InnoDB unspecified vulnerability * mysql: Server: DML unspecified vulnerability * mysql: Server: Stored Procedure unspecified vulnerability * mysql: InnoDB unspecified vulnerability * mariadb-connector-c: Improper validation of content in a OK packet received from server * mysql: Server: FTS unspecified vulnerability * mysql: InnoDB unspecified vulnerability * mysql: Server: FTS unspecified vulnerability * mysql: Server: Locking unspecified vulnerability * mysql: C API unspecified vulnerability For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Bug Fix: * FTBFS: -D_GLIBCXX_ASSERTIONS * Queries with entity_id IN run much slower in MariaDB 10.3 than on MariaDB 10.1 * Cleanup race with wsrep_rsync_sst_tunnel may prevent full galera cluster bootstrap * There are undeclared file conflicts in several mariadb and mysql packages

Platform:
CentOS 8
Product:
Judy
galera
mariadb
Reference:
RHSA-2020:5500-01
CVE-2019-2938
CVE-2019-2974
CVE-2020-2574
CVE-2020-2752
CVE-2020-2760
CVE-2020-2780
CVE-2020-2812
CVE-2020-2814
CVE-2020-13249
CVE-2020-14765
CVE-2020-14776
CVE-2020-14789
CVE-2020-14812
CVE-2020-15180
CVE-2021-2022
CVE    15
CVE-2020-13249
CVE-2020-15180
CVE-2020-2574
CVE-2020-2752
...

© SecPod Technologies