[ALSA-2023:3087] mysql:8.0 security, bug fix, and enhancement update

Severity Important
Affected Packages 20
CVEs 37

mysql:8.0 security, bug fix, and enhancement update

MySQL is a multi-user, multi-threaded SQL database server. It consists of the MySQL server daemon (mysqld) and many client programs and libraries.

The following packages have been upgraded to a later upstream version: mysql (8.0.32). (BZ#2177734, BZ#2177735, BZ#2177736)

Security Fix(es):

  • mysql: Server: Security: Privileges unspecified vulnerability (CPU Apr 2023) (CVE-2023-21912)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-21594)
  • mysql: Server: Stored Procedure unspecified vulnerability (CPU Oct 2022) (CVE-2022-21599)
  • mysql: InnoDB unspecified vulnerability (CPU Oct 2022) (CVE-2022-21604)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-21608)
  • mysql: InnoDB unspecified vulnerability (CPU Oct 2022) (CVE-2022-21611)
  • mysql: Server: Connection Handling unspecified vulnerability (CPU Oct 2022) (CVE-2022-21617)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-21625)
  • mysql: Server: Security: Privileges unspecified vulnerability (CPU Oct 2022) (CVE-2022-21632)
  • mysql: Server: Replication unspecified vulnerability (CPU Oct 2022) (CVE-2022-21633)
  • mysql: InnoDB unspecified vulnerability (CPU Oct 2022) (CVE-2022-21637)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-21640)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-39400)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-39408)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2022) (CVE-2022-39410)
  • mysql: Server: DML unspecified vulnerability (CPU Jan 2023) (CVE-2023-21836)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21863)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21864)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21865)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21867)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21868)
  • mysql: InnoDB unspecified vulnerability (CPU Jan 2023) (CVE-2023-21869)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21870)
  • mysql: InnoDB unspecified vulnerability (CPU Jan 2023) (CVE-2023-21871)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21873)
  • mysql: Server: Security: Encryption unspecified vulnerability (CPU Jan 2023) (CVE-2023-21875)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21876)
  • mysql: InnoDB unspecified vulnerability (CPU Jan 2023) (CVE-2023-21877)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21878)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21879)
  • mysql: InnoDB unspecified vulnerability (CPU Jan 2023) (CVE-2023-21880)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21881)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21883)
  • mysql: Server: GIS unspecified vulnerability (CPU Jan 2023) (CVE-2023-21887)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Apr 2023) (CVE-2023-21917)
  • mysql: Server: Thread Pooling unspecified vulnerability (CPU Jan 2023) (CVE-2023-21874)
  • mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2023) (CVE-2023-21882)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Bug Fix(es):

  • AlmaLinux8 AppStream and Devel channels missing mecab-devel rpm (BZ#2180411)
Package Affected Version
pkg:rpm/almalinux/mysql?arch=x86_64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql?arch=aarch64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-test?arch=x86_64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-test?arch=aarch64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-server?arch=x86_64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-server?arch=aarch64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-libs?arch=x86_64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-libs?arch=aarch64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-errmsg?arch=x86_64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-errmsg?arch=aarch64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-devel?arch=x86_64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-devel?arch=aarch64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-common?arch=x86_64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mysql-common?arch=aarch64&distro=almalinux-8.8 < 8.0.32-1.module_el8.8.0+3567+56a616e4
pkg:rpm/almalinux/mecab?arch=x86_64&distro=almalinux-8.6 < 0.996-2.module_el8.6.0+3340+d764b636
pkg:rpm/almalinux/mecab?arch=aarch64&distro=almalinux-8.6 < 0.996-2.module_el8.6.0+3340+d764b636
pkg:rpm/almalinux/mecab-ipadic?arch=x86_64&distro=almalinux-8.6 < 2.7.0.20070801-16.module_el8.6.0+3340+d764b636
pkg:rpm/almalinux/mecab-ipadic?arch=aarch64&distro=almalinux-8.6 < 2.7.0.20070801-16.module_el8.6.0+3340+d764b636
pkg:rpm/almalinux/mecab-ipadic-EUCJP?arch=x86_64&distro=almalinux-8.6 < 2.7.0.20070801-16.module_el8.6.0+3340+d764b636
pkg:rpm/almalinux/mecab-ipadic-EUCJP?arch=aarch64&distro=almalinux-8.6 < 2.7.0.20070801-16.module_el8.6.0+3340+d764b636
Source # ID Name URL
RHSA RHSA-2023:3087 https://access.redhat.com/errata/RHSA-2023:3087
CVE CVE-2022-21594 https://access.redhat.com/security/cve/CVE-2022-21594
CVE CVE-2022-21599 https://access.redhat.com/security/cve/CVE-2022-21599
CVE CVE-2022-21604 https://access.redhat.com/security/cve/CVE-2022-21604
CVE CVE-2022-21608 https://access.redhat.com/security/cve/CVE-2022-21608
CVE CVE-2022-21611 https://access.redhat.com/security/cve/CVE-2022-21611
CVE CVE-2022-21617 https://access.redhat.com/security/cve/CVE-2022-21617
CVE CVE-2022-21625 https://access.redhat.com/security/cve/CVE-2022-21625
CVE CVE-2022-21632 https://access.redhat.com/security/cve/CVE-2022-21632
CVE CVE-2022-21633 https://access.redhat.com/security/cve/CVE-2022-21633
CVE CVE-2022-21637 https://access.redhat.com/security/cve/CVE-2022-21637
CVE CVE-2022-21640 https://access.redhat.com/security/cve/CVE-2022-21640
CVE CVE-2022-39400 https://access.redhat.com/security/cve/CVE-2022-39400
CVE CVE-2022-39408 https://access.redhat.com/security/cve/CVE-2022-39408
CVE CVE-2022-39410 https://access.redhat.com/security/cve/CVE-2022-39410
CVE CVE-2023-21836 https://access.redhat.com/security/cve/CVE-2023-21836
CVE CVE-2023-21863 https://access.redhat.com/security/cve/CVE-2023-21863
CVE CVE-2023-21864 https://access.redhat.com/security/cve/CVE-2023-21864
CVE CVE-2023-21865 https://access.redhat.com/security/cve/CVE-2023-21865
CVE CVE-2023-21867 https://access.redhat.com/security/cve/CVE-2023-21867
CVE CVE-2023-21868 https://access.redhat.com/security/cve/CVE-2023-21868
CVE CVE-2023-21869 https://access.redhat.com/security/cve/CVE-2023-21869
CVE CVE-2023-21870 https://access.redhat.com/security/cve/CVE-2023-21870
CVE CVE-2023-21871 https://access.redhat.com/security/cve/CVE-2023-21871
CVE CVE-2023-21873 https://access.redhat.com/security/cve/CVE-2023-21873
CVE CVE-2023-21874 https://access.redhat.com/security/cve/CVE-2023-21874
CVE CVE-2023-21875 https://access.redhat.com/security/cve/CVE-2023-21875
CVE CVE-2023-21876 https://access.redhat.com/security/cve/CVE-2023-21876
CVE CVE-2023-21877 https://access.redhat.com/security/cve/CVE-2023-21877
CVE CVE-2023-21878 https://access.redhat.com/security/cve/CVE-2023-21878
CVE CVE-2023-21879 https://access.redhat.com/security/cve/CVE-2023-21879
CVE CVE-2023-21880 https://access.redhat.com/security/cve/CVE-2023-21880
CVE CVE-2023-21881 https://access.redhat.com/security/cve/CVE-2023-21881
CVE CVE-2023-21882 https://access.redhat.com/security/cve/CVE-2023-21882
CVE CVE-2023-21883 https://access.redhat.com/security/cve/CVE-2023-21883
CVE CVE-2023-21887 https://access.redhat.com/security/cve/CVE-2023-21887
CVE CVE-2023-21912 https://access.redhat.com/security/cve/CVE-2023-21912
CVE CVE-2023-21917 https://access.redhat.com/security/cve/CVE-2023-21917
Bugzilla 2142861 https://bugzilla.redhat.com/2142861
Bugzilla 2142863 https://bugzilla.redhat.com/2142863
Bugzilla 2142865 https://bugzilla.redhat.com/2142865
Bugzilla 2142868 https://bugzilla.redhat.com/2142868
Bugzilla 2142869 https://bugzilla.redhat.com/2142869
Bugzilla 2142870 https://bugzilla.redhat.com/2142870
Bugzilla 2142871 https://bugzilla.redhat.com/2142871
Bugzilla 2142872 https://bugzilla.redhat.com/2142872
Bugzilla 2142873 https://bugzilla.redhat.com/2142873
Bugzilla 2142875 https://bugzilla.redhat.com/2142875
Bugzilla 2142877 https://bugzilla.redhat.com/2142877
Bugzilla 2142879 https://bugzilla.redhat.com/2142879
Bugzilla 2142880 https://bugzilla.redhat.com/2142880
Bugzilla 2142881 https://bugzilla.redhat.com/2142881
Bugzilla 2162268 https://bugzilla.redhat.com/2162268
Bugzilla 2162270 https://bugzilla.redhat.com/2162270
Bugzilla 2162271 https://bugzilla.redhat.com/2162271
Bugzilla 2162272 https://bugzilla.redhat.com/2162272
Bugzilla 2162274 https://bugzilla.redhat.com/2162274
Bugzilla 2162275 https://bugzilla.redhat.com/2162275
Bugzilla 2162276 https://bugzilla.redhat.com/2162276
Bugzilla 2162277 https://bugzilla.redhat.com/2162277
Bugzilla 2162278 https://bugzilla.redhat.com/2162278
Bugzilla 2162280 https://bugzilla.redhat.com/2162280
Bugzilla 2162281 https://bugzilla.redhat.com/2162281
Bugzilla 2162282 https://bugzilla.redhat.com/2162282
Bugzilla 2162283 https://bugzilla.redhat.com/2162283
Bugzilla 2162284 https://bugzilla.redhat.com/2162284
Bugzilla 2162285 https://bugzilla.redhat.com/2162285
Bugzilla 2162286 https://bugzilla.redhat.com/2162286
Bugzilla 2162287 https://bugzilla.redhat.com/2162287
Bugzilla 2162288 https://bugzilla.redhat.com/2162288
Bugzilla 2162289 https://bugzilla.redhat.com/2162289
Bugzilla 2162290 https://bugzilla.redhat.com/2162290
Bugzilla 2162291 https://bugzilla.redhat.com/2162291
Bugzilla 2188110 https://bugzilla.redhat.com/2188110
Bugzilla 2188112 https://bugzilla.redhat.com/2188112
Self ALSA-2023:3087 https://errata.almalinux.org/8/ALSA-2023-3087.html
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/almalinux/mysql?arch=x86_64&distro=almalinux-8.8 almalinux mysql < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 x86_64
Affected pkg:rpm/almalinux/mysql?arch=aarch64&distro=almalinux-8.8 almalinux mysql < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 aarch64
Affected pkg:rpm/almalinux/mysql-test?arch=x86_64&distro=almalinux-8.8 almalinux mysql-test < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 x86_64
Affected pkg:rpm/almalinux/mysql-test?arch=aarch64&distro=almalinux-8.8 almalinux mysql-test < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 aarch64
Affected pkg:rpm/almalinux/mysql-server?arch=x86_64&distro=almalinux-8.8 almalinux mysql-server < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 x86_64
Affected pkg:rpm/almalinux/mysql-server?arch=aarch64&distro=almalinux-8.8 almalinux mysql-server < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 aarch64
Affected pkg:rpm/almalinux/mysql-libs?arch=x86_64&distro=almalinux-8.8 almalinux mysql-libs < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 x86_64
Affected pkg:rpm/almalinux/mysql-libs?arch=aarch64&distro=almalinux-8.8 almalinux mysql-libs < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 aarch64
Affected pkg:rpm/almalinux/mysql-errmsg?arch=x86_64&distro=almalinux-8.8 almalinux mysql-errmsg < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 x86_64
Affected pkg:rpm/almalinux/mysql-errmsg?arch=aarch64&distro=almalinux-8.8 almalinux mysql-errmsg < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 aarch64
Affected pkg:rpm/almalinux/mysql-devel?arch=x86_64&distro=almalinux-8.8 almalinux mysql-devel < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 x86_64
Affected pkg:rpm/almalinux/mysql-devel?arch=aarch64&distro=almalinux-8.8 almalinux mysql-devel < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 aarch64
Affected pkg:rpm/almalinux/mysql-common?arch=x86_64&distro=almalinux-8.8 almalinux mysql-common < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 x86_64
Affected pkg:rpm/almalinux/mysql-common?arch=aarch64&distro=almalinux-8.8 almalinux mysql-common < 8.0.32-1.module_el8.8.0+3567+56a616e4 almalinux-8.8 aarch64
Affected pkg:rpm/almalinux/mecab?arch=x86_64&distro=almalinux-8.6 almalinux mecab < 0.996-2.module_el8.6.0+3340+d764b636 almalinux-8.6 x86_64
Affected pkg:rpm/almalinux/mecab?arch=aarch64&distro=almalinux-8.6 almalinux mecab < 0.996-2.module_el8.6.0+3340+d764b636 almalinux-8.6 aarch64
Affected pkg:rpm/almalinux/mecab-ipadic?arch=x86_64&distro=almalinux-8.6 almalinux mecab-ipadic < 2.7.0.20070801-16.module_el8.6.0+3340+d764b636 almalinux-8.6 x86_64
Affected pkg:rpm/almalinux/mecab-ipadic?arch=aarch64&distro=almalinux-8.6 almalinux mecab-ipadic < 2.7.0.20070801-16.module_el8.6.0+3340+d764b636 almalinux-8.6 aarch64
Affected pkg:rpm/almalinux/mecab-ipadic-EUCJP?arch=x86_64&distro=almalinux-8.6 almalinux mecab-ipadic-EUCJP < 2.7.0.20070801-16.module_el8.6.0+3340+d764b636 almalinux-8.6 x86_64
Affected pkg:rpm/almalinux/mecab-ipadic-EUCJP?arch=aarch64&distro=almalinux-8.6 almalinux mecab-ipadic-EUCJP < 2.7.0.20070801-16.module_el8.6.0+3340+d764b636 almalinux-8.6 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...