[ALSA-2020:3732] mysql:8.0 security update

Severity Important
Affected Packages 23
CVEs 109

An update for the mysql:8.0 module is now available for AlmaLinux AlmaLinux Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

MySQL is a multi-user, multi-threaded SQL database server. It consists of the MySQL server daemon (mysqld) and many client programs and libraries.

The following packages have been upgraded to a later upstream version: mysql (8.0.21).

Security Fix(es):

  • mysql: Server: Security: Privileges multiple unspecified vulnerabilities (CVE-2020-14663, CVE-2020-14678, CVE-2020-14697, CVE-2020-2761, CVE-2020-2774, CVE-2020-2779, CVE-2020-2853, CVE-2020-14586, CVE-2020-14702)

  • mysql: Server: Security: Encryption multiple unspecified vulnerabilities (CVE-2019-2914, CVE-2019-2957)

  • mysql: InnoDB multiple unspecified vulnerabilities (CVE-2019-2938, CVE-2019-2963, CVE-2019-2968, CVE-2019-3018, CVE-2020-2577, CVE-2020-2589, CVE-2020-2760, CVE-2020-2762, CVE-2020-2814, CVE-2020-2893, CVE-2020-2895, CVE-2020-14568, CVE-2020-14623, CVE-2020-14633, CVE-2020-14634)

  • mysql: Server: PS multiple unspecified vulnerabilities (CVE-2019-2946, CVE-2020-2925)

  • mysql: Server: Replication multiple unspecified vulnerabilities (CVE-2019-2960, CVE-2020-2759, CVE-2020-2763, CVE-2020-14567)

  • mysql: Server: Optimizer multiple unspecified vulnerabilities (CVE-2019-2966, CVE-2019-2967, CVE-2019-2974, CVE-2019-2982, CVE-2019-2991, CVE-2019-2998, CVE-2020-2579, CVE-2020-2660, CVE-2020-2679, CVE-2020-2686, CVE-2020-2765, CVE-2020-2892, CVE-2020-2897, CVE-2020-2901, CVE-2020-2904, CVE-2020-2923, CVE-2020-2924, CVE-2020-2928, CVE-2020-14539, CVE-2020-14547, CVE-2020-14597, CVE-2020-14614, CVE-2020-14654, CVE-2020-14680, CVE-2020-14725)

  • mysql: Server: C API multiple unspecified vulnerabilities (CVE-2019-2993, CVE-2019-3011)

  • mysql: Server: DDL multiple unspecified vulnerabilities (CVE-2019-2997, CVE-2020-2580)

  • mysql: Server: Parser multiple unspecified vulnerabilities (CVE-2019-3004, CVE-2020-2627, CVE-2020-2930, CVE-2020-14619)

  • mysql: Server: Connection unspecified vulnerability (CVE-2019-3009)

  • mysql: Server: Options multiple unspecified vulnerabilities (CVE-2020-2584, CVE-2020-14632)

  • mysql: Server: DML multiple unspecified vulnerabilities (CVE-2020-2588, CVE-2020-2780, CVE-2020-14540, CVE-2020-14575, CVE-2020-14620)

  • mysql: C API multiple unspecified vulnerabilities (CVE-2020-2752, CVE-2020-2922, CVE-2020-14550, CVE-2020-2570, CVE-2020-2573, CVE-2020-2574)

  • mysql: Server: Logging unspecified vulnerability (CVE-2020-2770)

  • mysql: Server: Memcached unspecified vulnerability (CVE-2020-2804)

  • mysql: Server: Stored Procedure unspecified vulnerability (CVE-2020-2812)

  • mysql: Server: Information Schema multiple unspecified vulnerabilities (CVE-2020-2896, CVE-2020-14559, CVE-2020-2694)

  • mysql: Server: Charsets unspecified vulnerability (CVE-2020-2898)

  • mysql: Server: Connection Handling unspecified vulnerability (CVE-2020-2903)

  • mysql: Server: Group Replication Plugin unspecified vulnerability (CVE-2020-2921)

  • mysql: Server: Group Replication GCS unspecified vulnerability (CVE-2020-2926)

  • mysql: Server: Pluggable Auth unspecified vulnerability (CVE-2020-14553)

  • mysql: Server: UDF unspecified vulnerability (CVE-2020-14576)

  • mysql: Server: JSON unspecified vulnerability (CVE-2020-14624)

  • mysql: Server: Security: Audit unspecified vulnerability (CVE-2020-14631)

  • mysql: Server: Security: Roles multiple unspecified vulnerabilities (CVE-2020-14641, CVE-2020-14643, CVE-2020-14651)

  • mysql: Server: Locking unspecified vulnerability (CVE-2020-14656)

  • mysql: Information Schema unspecified vulnerability (CVE-2019-2911)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Package Affected Version
pkg:rpm/almalinux/mysql?arch=x86_64&distro=almalinux-8.3 < 8.0.21-1.module_el8.3.0+2049+47abd494
pkg:rpm/almalinux/mysql?arch=aarch64&distro=almalinux-8.4 < 8.0.21-1.module_el8.4.0+2259+47abd494
pkg:rpm/almalinux/mysql-test?arch=x86_64&distro=almalinux-8.3 < 8.0.21-1.module_el8.3.0+2049+47abd494
pkg:rpm/almalinux/mysql-test?arch=aarch64&distro=almalinux-8.4 < 8.0.21-1.module_el8.4.0+2259+47abd494
pkg:rpm/almalinux/mysql-server?arch=x86_64&distro=almalinux-8.3 < 8.0.21-1.module_el8.3.0+2049+47abd494
pkg:rpm/almalinux/mysql-server?arch=aarch64&distro=almalinux-8.4 < 8.0.21-1.module_el8.4.0+2259+47abd494
pkg:rpm/almalinux/mysql-libs?arch=x86_64&distro=almalinux-8.3 < 8.0.21-1.module_el8.3.0+2049+47abd494
pkg:rpm/almalinux/mysql-libs?arch=aarch64&distro=almalinux-8.4 < 8.0.21-1.module_el8.4.0+2259+47abd494
pkg:rpm/almalinux/mysql-errmsg?arch=x86_64&distro=almalinux-8.3 < 8.0.21-1.module_el8.3.0+2049+47abd494
pkg:rpm/almalinux/mysql-errmsg?arch=aarch64&distro=almalinux-8.4 < 8.0.21-1.module_el8.4.0+2259+47abd494
pkg:rpm/almalinux/mysql-devel?arch=x86_64&distro=almalinux-8.3 < 8.0.21-1.module_el8.3.0+2049+47abd494
pkg:rpm/almalinux/mysql-devel?arch=aarch64&distro=almalinux-8.4 < 8.0.21-1.module_el8.4.0+2259+47abd494
pkg:rpm/almalinux/mysql-common?arch=x86_64&distro=almalinux-8.3 < 8.0.21-1.module_el8.3.0+2049+47abd494
pkg:rpm/almalinux/mysql-common?arch=aarch64&distro=almalinux-8.4 < 8.0.21-1.module_el8.4.0+2259+47abd494
pkg:rpm/almalinux/mecab?arch=x86_64&distro=almalinux-8.4 < 0.996-1.module_el8.4.0+2532+b8928c02.9
pkg:rpm/almalinux/mecab?arch=x86_64&distro=almalinux-8.3 < 0.996-1.module_el8.3.0+2049+47abd494.9
pkg:rpm/almalinux/mecab?arch=aarch64&distro=almalinux-8.4 < 0.996-1.module_el8.4.0+2532+b8928c02.9
pkg:rpm/almalinux/mecab-ipadic?arch=x86_64&distro=almalinux-8.4 < 2.7.0.20070801-16.module_el8.4.0+2532+b8928c02
pkg:rpm/almalinux/mecab-ipadic?arch=x86_64&distro=almalinux-8.3 < 2.7.0.20070801-16.module_el8.3.0+2049+47abd494
pkg:rpm/almalinux/mecab-ipadic?arch=aarch64&distro=almalinux-8.4 < 2.7.0.20070801-16.module_el8.4.0+2532+b8928c02
pkg:rpm/almalinux/mecab-ipadic-EUCJP?arch=x86_64&distro=almalinux-8.4 < 2.7.0.20070801-16.module_el8.4.0+2532+b8928c02
pkg:rpm/almalinux/mecab-ipadic-EUCJP?arch=x86_64&distro=almalinux-8.3 < 2.7.0.20070801-16.module_el8.3.0+2049+47abd494
pkg:rpm/almalinux/mecab-ipadic-EUCJP?arch=aarch64&distro=almalinux-8.4 < 2.7.0.20070801-16.module_el8.4.0+2532+b8928c02
ID
ALSA-2020:3732
Severity
important
URL
https://errata.almalinux.org/ALSA-2020:3732.html
Published
2020-09-14T12:23:24
(4 years ago)
Modified
2020-09-14T12:23:24
(4 years ago)
Rights
Copyright 2022 AlmaLinux OS
Other Advisories
Source # ID Name URL
Self ALSA-2020-3732 https://errata.almalinux.org/8/ALSA-2020-3732.html
CVE CVE-2019-2911 https://vulners.com/cve/CVE-2019-2911
CVE CVE-2019-2914 https://vulners.com/cve/CVE-2019-2914
CVE CVE-2019-2938 https://vulners.com/cve/CVE-2019-2938
CVE CVE-2019-2946 https://vulners.com/cve/CVE-2019-2946
CVE CVE-2019-2957 https://vulners.com/cve/CVE-2019-2957
CVE CVE-2019-2960 https://vulners.com/cve/CVE-2019-2960
CVE CVE-2019-2963 https://vulners.com/cve/CVE-2019-2963
CVE CVE-2019-2966 https://vulners.com/cve/CVE-2019-2966
CVE CVE-2019-2967 https://vulners.com/cve/CVE-2019-2967
CVE CVE-2019-2968 https://vulners.com/cve/CVE-2019-2968
CVE CVE-2019-2974 https://vulners.com/cve/CVE-2019-2974
CVE CVE-2019-2982 https://vulners.com/cve/CVE-2019-2982
CVE CVE-2019-2991 https://vulners.com/cve/CVE-2019-2991
CVE CVE-2019-2993 https://vulners.com/cve/CVE-2019-2993
CVE CVE-2019-2997 https://vulners.com/cve/CVE-2019-2997
CVE CVE-2019-2998 https://vulners.com/cve/CVE-2019-2998
CVE CVE-2019-3004 https://vulners.com/cve/CVE-2019-3004
CVE CVE-2019-3009 https://vulners.com/cve/CVE-2019-3009
CVE CVE-2019-3011 https://vulners.com/cve/CVE-2019-3011
CVE CVE-2019-3018 https://vulners.com/cve/CVE-2019-3018
CVE CVE-2020-14539 https://vulners.com/cve/CVE-2020-14539
CVE CVE-2020-14540 https://vulners.com/cve/CVE-2020-14540
CVE CVE-2020-14547 https://vulners.com/cve/CVE-2020-14547
CVE CVE-2020-14550 https://vulners.com/cve/CVE-2020-14550
CVE CVE-2020-14553 https://vulners.com/cve/CVE-2020-14553
CVE CVE-2020-14559 https://vulners.com/cve/CVE-2020-14559
CVE CVE-2020-14567 https://vulners.com/cve/CVE-2020-14567
CVE CVE-2020-14568 https://vulners.com/cve/CVE-2020-14568
CVE CVE-2020-14575 https://vulners.com/cve/CVE-2020-14575
CVE CVE-2020-14576 https://vulners.com/cve/CVE-2020-14576
CVE CVE-2020-14586 https://vulners.com/cve/CVE-2020-14586
CVE CVE-2020-14597 https://vulners.com/cve/CVE-2020-14597
CVE CVE-2020-14614 https://vulners.com/cve/CVE-2020-14614
CVE CVE-2020-14619 https://vulners.com/cve/CVE-2020-14619
CVE CVE-2020-14620 https://vulners.com/cve/CVE-2020-14620
CVE CVE-2020-14623 https://vulners.com/cve/CVE-2020-14623
CVE CVE-2020-14624 https://vulners.com/cve/CVE-2020-14624
CVE CVE-2020-14631 https://vulners.com/cve/CVE-2020-14631
CVE CVE-2020-14632 https://vulners.com/cve/CVE-2020-14632
CVE CVE-2020-14633 https://vulners.com/cve/CVE-2020-14633
CVE CVE-2020-14634 https://vulners.com/cve/CVE-2020-14634
CVE CVE-2020-14641 https://vulners.com/cve/CVE-2020-14641
CVE CVE-2020-14643 https://vulners.com/cve/CVE-2020-14643
CVE CVE-2020-14651 https://vulners.com/cve/CVE-2020-14651
CVE CVE-2020-14654 https://vulners.com/cve/CVE-2020-14654
CVE CVE-2020-14656 https://vulners.com/cve/CVE-2020-14656
CVE CVE-2020-14663 https://vulners.com/cve/CVE-2020-14663
CVE CVE-2020-14678 https://vulners.com/cve/CVE-2020-14678
CVE CVE-2020-14680 https://vulners.com/cve/CVE-2020-14680
CVE CVE-2020-14697 https://vulners.com/cve/CVE-2020-14697
CVE CVE-2020-14702 https://vulners.com/cve/CVE-2020-14702
CVE CVE-2020-14725 https://vulners.com/cve/CVE-2020-14725
CVE CVE-2020-14799 https://vulners.com/cve/CVE-2020-14799
CVE CVE-2020-2570 https://vulners.com/cve/CVE-2020-2570
CVE CVE-2020-2573 https://vulners.com/cve/CVE-2020-2573
CVE CVE-2020-2574 https://vulners.com/cve/CVE-2020-2574
CVE CVE-2020-2577 https://vulners.com/cve/CVE-2020-2577
CVE CVE-2020-2579 https://vulners.com/cve/CVE-2020-2579
CVE CVE-2020-2580 https://vulners.com/cve/CVE-2020-2580
CVE CVE-2020-2584 https://vulners.com/cve/CVE-2020-2584
CVE CVE-2020-2588 https://vulners.com/cve/CVE-2020-2588
CVE CVE-2020-2589 https://vulners.com/cve/CVE-2020-2589
CVE CVE-2020-2627 https://vulners.com/cve/CVE-2020-2627
CVE CVE-2020-2660 https://vulners.com/cve/CVE-2020-2660
CVE CVE-2020-2679 https://vulners.com/cve/CVE-2020-2679
CVE CVE-2020-2686 https://vulners.com/cve/CVE-2020-2686
CVE CVE-2020-2694 https://vulners.com/cve/CVE-2020-2694
CVE CVE-2020-2752 https://vulners.com/cve/CVE-2020-2752
CVE CVE-2020-2759 https://vulners.com/cve/CVE-2020-2759
CVE CVE-2020-2760 https://vulners.com/cve/CVE-2020-2760
CVE CVE-2020-2761 https://vulners.com/cve/CVE-2020-2761
CVE CVE-2020-2762 https://vulners.com/cve/CVE-2020-2762
CVE CVE-2020-2763 https://vulners.com/cve/CVE-2020-2763
CVE CVE-2020-2765 https://vulners.com/cve/CVE-2020-2765
CVE CVE-2020-2770 https://vulners.com/cve/CVE-2020-2770
CVE CVE-2020-2774 https://vulners.com/cve/CVE-2020-2774
CVE CVE-2020-2779 https://vulners.com/cve/CVE-2020-2779
CVE CVE-2020-2780 https://vulners.com/cve/CVE-2020-2780
CVE CVE-2020-2804 https://vulners.com/cve/CVE-2020-2804
CVE CVE-2020-2812 https://vulners.com/cve/CVE-2020-2812
CVE CVE-2020-2814 https://vulners.com/cve/CVE-2020-2814
CVE CVE-2020-2853 https://vulners.com/cve/CVE-2020-2853
CVE CVE-2020-2892 https://vulners.com/cve/CVE-2020-2892
CVE CVE-2020-2893 https://vulners.com/cve/CVE-2020-2893
CVE CVE-2020-2895 https://vulners.com/cve/CVE-2020-2895
CVE CVE-2020-2896 https://vulners.com/cve/CVE-2020-2896
CVE CVE-2020-2897 https://vulners.com/cve/CVE-2020-2897
CVE CVE-2020-2898 https://vulners.com/cve/CVE-2020-2898
CVE CVE-2020-2901 https://vulners.com/cve/CVE-2020-2901
CVE CVE-2020-2903 https://vulners.com/cve/CVE-2020-2903
CVE CVE-2020-2904 https://vulners.com/cve/CVE-2020-2904
CVE CVE-2020-2921 https://vulners.com/cve/CVE-2020-2921
CVE CVE-2020-2922 https://vulners.com/cve/CVE-2020-2922
CVE CVE-2020-2923 https://vulners.com/cve/CVE-2020-2923
CVE CVE-2020-2924 https://vulners.com/cve/CVE-2020-2924
CVE CVE-2020-2925 https://vulners.com/cve/CVE-2020-2925
CVE CVE-2020-2926 https://vulners.com/cve/CVE-2020-2926
CVE CVE-2020-2928 https://vulners.com/cve/CVE-2020-2928
CVE CVE-2020-2930 https://vulners.com/cve/CVE-2020-2930
CVE CVE-2021-1998 https://vulners.com/cve/CVE-2021-1998
CVE CVE-2021-2006 https://vulners.com/cve/CVE-2021-2006
CVE CVE-2021-2007 https://vulners.com/cve/CVE-2021-2007
CVE CVE-2021-2009 https://vulners.com/cve/CVE-2021-2009
CVE CVE-2021-2012 https://vulners.com/cve/CVE-2021-2012
CVE CVE-2021-2016 https://vulners.com/cve/CVE-2021-2016
CVE CVE-2021-2019 https://vulners.com/cve/CVE-2021-2019
CVE CVE-2021-2020 https://vulners.com/cve/CVE-2021-2020
CVE CVE-2021-2144 https://vulners.com/cve/CVE-2021-2144
CVE CVE-2021-2160 https://vulners.com/cve/CVE-2021-2160
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/almalinux/mysql?arch=x86_64&distro=almalinux-8.3 almalinux mysql < 8.0.21-1.module_el8.3.0+2049+47abd494 almalinux-8.3 x86_64
Affected pkg:rpm/almalinux/mysql?arch=aarch64&distro=almalinux-8.4 almalinux mysql < 8.0.21-1.module_el8.4.0+2259+47abd494 almalinux-8.4 aarch64
Affected pkg:rpm/almalinux/mysql-test?arch=x86_64&distro=almalinux-8.3 almalinux mysql-test < 8.0.21-1.module_el8.3.0+2049+47abd494 almalinux-8.3 x86_64
Affected pkg:rpm/almalinux/mysql-test?arch=aarch64&distro=almalinux-8.4 almalinux mysql-test < 8.0.21-1.module_el8.4.0+2259+47abd494 almalinux-8.4 aarch64
Affected pkg:rpm/almalinux/mysql-server?arch=x86_64&distro=almalinux-8.3 almalinux mysql-server < 8.0.21-1.module_el8.3.0+2049+47abd494 almalinux-8.3 x86_64
Affected pkg:rpm/almalinux/mysql-server?arch=aarch64&distro=almalinux-8.4 almalinux mysql-server < 8.0.21-1.module_el8.4.0+2259+47abd494 almalinux-8.4 aarch64
Affected pkg:rpm/almalinux/mysql-libs?arch=x86_64&distro=almalinux-8.3 almalinux mysql-libs < 8.0.21-1.module_el8.3.0+2049+47abd494 almalinux-8.3 x86_64
Affected pkg:rpm/almalinux/mysql-libs?arch=aarch64&distro=almalinux-8.4 almalinux mysql-libs < 8.0.21-1.module_el8.4.0+2259+47abd494 almalinux-8.4 aarch64
Affected pkg:rpm/almalinux/mysql-errmsg?arch=x86_64&distro=almalinux-8.3 almalinux mysql-errmsg < 8.0.21-1.module_el8.3.0+2049+47abd494 almalinux-8.3 x86_64
Affected pkg:rpm/almalinux/mysql-errmsg?arch=aarch64&distro=almalinux-8.4 almalinux mysql-errmsg < 8.0.21-1.module_el8.4.0+2259+47abd494 almalinux-8.4 aarch64
Affected pkg:rpm/almalinux/mysql-devel?arch=x86_64&distro=almalinux-8.3 almalinux mysql-devel < 8.0.21-1.module_el8.3.0+2049+47abd494 almalinux-8.3 x86_64
Affected pkg:rpm/almalinux/mysql-devel?arch=aarch64&distro=almalinux-8.4 almalinux mysql-devel < 8.0.21-1.module_el8.4.0+2259+47abd494 almalinux-8.4 aarch64
Affected pkg:rpm/almalinux/mysql-common?arch=x86_64&distro=almalinux-8.3 almalinux mysql-common < 8.0.21-1.module_el8.3.0+2049+47abd494 almalinux-8.3 x86_64
Affected pkg:rpm/almalinux/mysql-common?arch=aarch64&distro=almalinux-8.4 almalinux mysql-common < 8.0.21-1.module_el8.4.0+2259+47abd494 almalinux-8.4 aarch64
Affected pkg:rpm/almalinux/mecab?arch=x86_64&distro=almalinux-8.4 almalinux mecab < 0.996-1.module_el8.4.0+2532+b8928c02.9 almalinux-8.4 x86_64
Affected pkg:rpm/almalinux/mecab?arch=x86_64&distro=almalinux-8.3 almalinux mecab < 0.996-1.module_el8.3.0+2049+47abd494.9 almalinux-8.3 x86_64
Affected pkg:rpm/almalinux/mecab?arch=aarch64&distro=almalinux-8.4 almalinux mecab < 0.996-1.module_el8.4.0+2532+b8928c02.9 almalinux-8.4 aarch64
Affected pkg:rpm/almalinux/mecab-ipadic?arch=x86_64&distro=almalinux-8.4 almalinux mecab-ipadic < 2.7.0.20070801-16.module_el8.4.0+2532+b8928c02 almalinux-8.4 x86_64
Affected pkg:rpm/almalinux/mecab-ipadic?arch=x86_64&distro=almalinux-8.3 almalinux mecab-ipadic < 2.7.0.20070801-16.module_el8.3.0+2049+47abd494 almalinux-8.3 x86_64
Affected pkg:rpm/almalinux/mecab-ipadic?arch=aarch64&distro=almalinux-8.4 almalinux mecab-ipadic < 2.7.0.20070801-16.module_el8.4.0+2532+b8928c02 almalinux-8.4 aarch64
Affected pkg:rpm/almalinux/mecab-ipadic-EUCJP?arch=x86_64&distro=almalinux-8.4 almalinux mecab-ipadic-EUCJP < 2.7.0.20070801-16.module_el8.4.0+2532+b8928c02 almalinux-8.4 x86_64
Affected pkg:rpm/almalinux/mecab-ipadic-EUCJP?arch=x86_64&distro=almalinux-8.3 almalinux mecab-ipadic-EUCJP < 2.7.0.20070801-16.module_el8.3.0+2049+47abd494 almalinux-8.3 x86_64
Affected pkg:rpm/almalinux/mecab-ipadic-EUCJP?arch=aarch64&distro=almalinux-8.4 almalinux mecab-ipadic-EUCJP < 2.7.0.20070801-16.module_el8.4.0+2532+b8928c02 almalinux-8.4 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...