[RHSA-2018:2439] mariadb security and bug fix update
MariaDB is a multi-user, multi-threaded SQL database server that is binary compatible with MySQL.
The following packages have been upgraded to a later upstream version: mariadb (5.5.60). (BZ#1584668, BZ#1584671, BZ#1584674, BZ#1601085)
Security Fix(es):
mysql: Client programs unspecified vulnerability (CPU Jul 2017) (CVE-2017-3636)
mysql: Server: DML unspecified vulnerability (CPU Jul 2017) (CVE-2017-3641)
mysql: Client mysqldump unspecified vulnerability (CPU Jul 2017) (CVE-2017-3651)
mysql: Server: Replication unspecified vulnerability (CPU Oct 2017) (CVE-2017-10268)
mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2017) (CVE-2017-10378)
mysql: Client programs unspecified vulnerability (CPU Oct 2017) (CVE-2017-10379)
mysql: Server: DDL unspecified vulnerability (CPU Oct 2017) (CVE-2017-10384)
mysql: Server: Partition unspecified vulnerability (CPU Jan 2018) (CVE-2018-2562)
mysql: Server: DDL unspecified vulnerability (CPU Jan 2018) (CVE-2018-2622)
mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2018) (CVE-2018-2640)
mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2018) (CVE-2018-2665)
mysql: Server: Optimizer unspecified vulnerability (CPU Jan 2018) (CVE-2018-2668)
mysql: Server: Replication unspecified vulnerability (CPU Apr 2018) (CVE-2018-2755)
mysql: Client programs unspecified vulnerability (CPU Apr 2018) (CVE-2018-2761)
mysql: Server: Locking unspecified vulnerability (CPU Apr 2018) (CVE-2018-2771)
mysql: Server: Optimizer unspecified vulnerability (CPU Apr 2018) (CVE-2018-2781)
mysql: Server: DDL unspecified vulnerability (CPU Apr 2018) (CVE-2018-2813)
mysql: Server: DDL unspecified vulnerability (CPU Apr 2018) (CVE-2018-2817)
mysql: InnoDB unspecified vulnerability (CPU Apr 2018) (CVE-2018-2819)
mysql: Server: DDL unspecified vulnerability (CPU Jul 2017) (CVE-2017-3653)
mysql: use of SSL/TLS not enforced in libmysqld (Return of BACKRONYM) (CVE-2018-2767)
For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.
Bug Fix(es):
- Previously, the mysqladmin tool waited for an inadequate length of time if the socket it listened on did not respond in a specific way. Consequently, when the socket was used while the MariaDB server was starting, the mariadb service became unresponsive for a long time. With this update, the mysqladmin timeout has been shortened to 2 seconds. As a result, the mariadb service either starts or fails but no longer hangs in the described situation. (BZ#1584023)
- ID
- RHSA-2018:2439
- Severity
- moderate
- URL
- https://access.redhat.com/errata/RHSA-2018:2439
- Published
-
2018-08-16T00:00:00
(6 years ago) - Modified
-
2018-08-16T00:00:00
(6 years ago) - Rights
- Copyright 2018 Red Hat, Inc.
- Other Advisories
-
- ALAS-2017-887
- ALAS-2017-888
- ALAS-2017-926
- ALAS-2017-927
- ALAS-2018-1026
- ALAS-2018-1027
- ALAS-2018-1028
- ALAS-2018-1068
- ALAS-2018-1069
- ALAS-2018-1070
- ALAS-2018-1114
- ALAS-2018-1115
- ALAS-2018-1116
- ALAS-2018-969
- ALAS-2019-1178
- ALAS-2019-1181
- ALAS2-2018-1078
- ALPINE:CVE-2017-10268
- ALPINE:CVE-2017-10378
- ALPINE:CVE-2017-3636
- ALPINE:CVE-2017-3641
- ALPINE:CVE-2017-3653
- ALPINE:CVE-2018-2562
- ALPINE:CVE-2018-2622
- ALPINE:CVE-2018-2640
- ALPINE:CVE-2018-2665
- ALPINE:CVE-2018-2668
- ALPINE:CVE-2018-2755
- ALPINE:CVE-2018-2761
- ALPINE:CVE-2018-2767
- ALPINE:CVE-2018-2771
- ALPINE:CVE-2018-2781
- ALPINE:CVE-2018-2813
- ALPINE:CVE-2018-2817
- ALPINE:CVE-2018-2819
- ALSA-2019:2511
- CPANSA-DBD-MariaDB-2018-01
- DSA-3922-1
- DSA-3944-1
- DSA-3955-1
- DSA-4002-1
- DSA-4091-1
- DSA-4176-1
- DSA-4341-1
- ELSA-2017-2192
- ELSA-2018-2439
- ELSA-2019-2511
- FEDORA-2017-50c790aaed
- FEDORA-2017-7c039552fa
- FEDORA-2017-95327e44ec
- FEDORA-2017-9e28c78e07
- FEDORA-2017-ee93493bea
- FEDORA-2018-00647ae0d5
- FEDORA-2018-00e90783d2
- FEDORA-2018-02c0e3725e
- FEDORA-2018-192148f4ff
- FEDORA-2018-2513b888a4
- FEDORA-2018-394bf4fb5a
- FEDORA-2018-3a3c660bfa
- FEDORA-2018-4ae94c8deb
- FEDORA-2018-55b875c1ac
- FEDORA-2018-7025a5c25d
- FEDORA-2018-77e610115a
- FEDORA-2018-83bbd0c22f
- FEDORA-2018-86026275ea
- FEDORA-2018-8b920c2b00
- FEDORA-2018-b4820696e1
- FEDORA-2018-c82fc3e109
- FEDORA-2018-d1c4a4ca50
- FEDORA-2018-d553b29a30
- FEDORA-2018-d955395c08
- FEDORA-2018-f67fda3db6
- FEDORA-2019-21b76d179e
- FEDORA-2019-614f1cd5a8
- FEDORA-2019-6a8a9efc40
- FEDORA-2019-96516ce0ac
- FEDORA-2019-c1fab3f139
- FREEBSD:57AEC168-453E-11E8-8777-B499BAEBFEAF
- FREEBSD:909BE51B-9B3B-11E8-ADD2-B499BAEBFEAF
- FREEBSD:C41BEDFD-B3F9-11E7-AC58-B499BAEBFEAF
- FREEBSD:CDA2F3C2-6C8B-11E7-867F-B499BAEBFEAF
- FREEBSD:D3D02D3A-2242-11E9-B95C-B499BAEBFEAF
- FREEBSD:E3445736-FD01-11E7-AC58-B499BAEBFEAF
- FREEBSD:EC5072B0-D43A-11E8-A6D2-B499BAEBFEAF
- GLSA-201802-04
- GLSA-201908-24
- RHSA-2017:2192
- RHSA-2019:2511
- RLSA-2019:2511
- SSA:2017-251-02
- SSA:2017-306-01
- SSA:2018-032-01
- SSA:2018-130-01
- SUSE-SU-2017:2290-1
- SUSE-SU-2017:2921-1
- SUSE-SU-2017:2996-1
- SUSE-SU-2018:0079-1
- SUSE-SU-2018:0384-1
- SUSE-SU-2018:0422-1
- SUSE-SU-2018:0697-1
- SUSE-SU-2018:0698-1
- SUSE-SU-2018:1333-1
- SUSE-SU-2018:1382-1
- SUSE-SU-2018:1771-1
- SUSE-SU-2018:1781-1
- SUSE-SU-2018:1781-2
- SUSE-SU-2018:1853-1
- SUSE-SU-2018:3542-1
- USN-3357-1
- USN-3357-2
- USN-3459-1
- USN-3459-2
- USN-3537-1
- USN-3537-2
- USN-3629-1
- USN-3629-2
- USN-3629-3
- USN-3725-1
- USN-3725-2
- USN-3799-1
- USN-3799-2
- USN-3867-1
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/redhat/mariadb?arch=x86_64&distro=redhat-7.5 | redhat | mariadb | < 5.5.60-1.el7_5 | redhat-7.5 | x86_64 | |
Affected | pkg:rpm/redhat/mariadb?arch=s390x&distro=redhat-7.5 | redhat | mariadb | < 5.5.60-1.el7_5 | redhat-7.5 | s390x | |
Affected | pkg:rpm/redhat/mariadb?arch=ppc64le&distro=redhat-7.5 | redhat | mariadb | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64le | |
Affected | pkg:rpm/redhat/mariadb?arch=ppc64&distro=redhat-7.5 | redhat | mariadb | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64 | |
Affected | pkg:rpm/redhat/mariadb?arch=aarch64&distro=redhat-7.5 | redhat | mariadb | < 5.5.60-1.el7_5 | redhat-7.5 | aarch64 | |
Affected | pkg:rpm/redhat/mariadb-test?arch=x86_64&distro=redhat-7.5 | redhat | mariadb-test | < 5.5.60-1.el7_5 | redhat-7.5 | x86_64 | |
Affected | pkg:rpm/redhat/mariadb-test?arch=s390x&distro=redhat-7.5 | redhat | mariadb-test | < 5.5.60-1.el7_5 | redhat-7.5 | s390x | |
Affected | pkg:rpm/redhat/mariadb-test?arch=ppc64le&distro=redhat-7.5 | redhat | mariadb-test | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64le | |
Affected | pkg:rpm/redhat/mariadb-test?arch=ppc64&distro=redhat-7.5 | redhat | mariadb-test | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64 | |
Affected | pkg:rpm/redhat/mariadb-test?arch=aarch64&distro=redhat-7.5 | redhat | mariadb-test | < 5.5.60-1.el7_5 | redhat-7.5 | aarch64 | |
Affected | pkg:rpm/redhat/mariadb-server?arch=x86_64&distro=redhat-7.5 | redhat | mariadb-server | < 5.5.60-1.el7_5 | redhat-7.5 | x86_64 | |
Affected | pkg:rpm/redhat/mariadb-server?arch=s390x&distro=redhat-7.5 | redhat | mariadb-server | < 5.5.60-1.el7_5 | redhat-7.5 | s390x | |
Affected | pkg:rpm/redhat/mariadb-server?arch=ppc64le&distro=redhat-7.5 | redhat | mariadb-server | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64le | |
Affected | pkg:rpm/redhat/mariadb-server?arch=ppc64&distro=redhat-7.5 | redhat | mariadb-server | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64 | |
Affected | pkg:rpm/redhat/mariadb-server?arch=aarch64&distro=redhat-7.5 | redhat | mariadb-server | < 5.5.60-1.el7_5 | redhat-7.5 | aarch64 | |
Affected | pkg:rpm/redhat/mariadb-libs?arch=x86_64&distro=redhat-7.5 | redhat | mariadb-libs | < 5.5.60-1.el7_5 | redhat-7.5 | x86_64 | |
Affected | pkg:rpm/redhat/mariadb-libs?arch=s390x&distro=redhat-7.5 | redhat | mariadb-libs | < 5.5.60-1.el7_5 | redhat-7.5 | s390x | |
Affected | pkg:rpm/redhat/mariadb-libs?arch=s390&distro=redhat-7.5 | redhat | mariadb-libs | < 5.5.60-1.el7_5 | redhat-7.5 | s390 | |
Affected | pkg:rpm/redhat/mariadb-libs?arch=ppc64le&distro=redhat-7.5 | redhat | mariadb-libs | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64le | |
Affected | pkg:rpm/redhat/mariadb-libs?arch=ppc64&distro=redhat-7.5 | redhat | mariadb-libs | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64 | |
Affected | pkg:rpm/redhat/mariadb-libs?arch=ppc&distro=redhat-7.5 | redhat | mariadb-libs | < 5.5.60-1.el7_5 | redhat-7.5 | ppc | |
Affected | pkg:rpm/redhat/mariadb-libs?arch=i686&distro=redhat-7.5 | redhat | mariadb-libs | < 5.5.60-1.el7_5 | redhat-7.5 | i686 | |
Affected | pkg:rpm/redhat/mariadb-libs?arch=aarch64&distro=redhat-7.5 | redhat | mariadb-libs | < 5.5.60-1.el7_5 | redhat-7.5 | aarch64 | |
Affected | pkg:rpm/redhat/mariadb-embedded?arch=x86_64&distro=redhat-7.5 | redhat | mariadb-embedded | < 5.5.60-1.el7_5 | redhat-7.5 | x86_64 | |
Affected | pkg:rpm/redhat/mariadb-embedded?arch=s390x&distro=redhat-7.5 | redhat | mariadb-embedded | < 5.5.60-1.el7_5 | redhat-7.5 | s390x | |
Affected | pkg:rpm/redhat/mariadb-embedded?arch=s390&distro=redhat-7.5 | redhat | mariadb-embedded | < 5.5.60-1.el7_5 | redhat-7.5 | s390 | |
Affected | pkg:rpm/redhat/mariadb-embedded?arch=ppc64le&distro=redhat-7.5 | redhat | mariadb-embedded | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64le | |
Affected | pkg:rpm/redhat/mariadb-embedded?arch=ppc64&distro=redhat-7.5 | redhat | mariadb-embedded | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64 | |
Affected | pkg:rpm/redhat/mariadb-embedded?arch=ppc&distro=redhat-7.5 | redhat | mariadb-embedded | < 5.5.60-1.el7_5 | redhat-7.5 | ppc | |
Affected | pkg:rpm/redhat/mariadb-embedded?arch=i686&distro=redhat-7.5 | redhat | mariadb-embedded | < 5.5.60-1.el7_5 | redhat-7.5 | i686 | |
Affected | pkg:rpm/redhat/mariadb-embedded?arch=aarch64&distro=redhat-7.5 | redhat | mariadb-embedded | < 5.5.60-1.el7_5 | redhat-7.5 | aarch64 | |
Affected | pkg:rpm/redhat/mariadb-embedded-devel?arch=x86_64&distro=redhat-7.5 | redhat | mariadb-embedded-devel | < 5.5.60-1.el7_5 | redhat-7.5 | x86_64 | |
Affected | pkg:rpm/redhat/mariadb-embedded-devel?arch=s390x&distro=redhat-7.5 | redhat | mariadb-embedded-devel | < 5.5.60-1.el7_5 | redhat-7.5 | s390x | |
Affected | pkg:rpm/redhat/mariadb-embedded-devel?arch=s390&distro=redhat-7.5 | redhat | mariadb-embedded-devel | < 5.5.60-1.el7_5 | redhat-7.5 | s390 | |
Affected | pkg:rpm/redhat/mariadb-embedded-devel?arch=ppc64le&distro=redhat-7.5 | redhat | mariadb-embedded-devel | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64le | |
Affected | pkg:rpm/redhat/mariadb-embedded-devel?arch=ppc64&distro=redhat-7.5 | redhat | mariadb-embedded-devel | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64 | |
Affected | pkg:rpm/redhat/mariadb-embedded-devel?arch=ppc&distro=redhat-7.5 | redhat | mariadb-embedded-devel | < 5.5.60-1.el7_5 | redhat-7.5 | ppc | |
Affected | pkg:rpm/redhat/mariadb-embedded-devel?arch=i686&distro=redhat-7.5 | redhat | mariadb-embedded-devel | < 5.5.60-1.el7_5 | redhat-7.5 | i686 | |
Affected | pkg:rpm/redhat/mariadb-embedded-devel?arch=aarch64&distro=redhat-7.5 | redhat | mariadb-embedded-devel | < 5.5.60-1.el7_5 | redhat-7.5 | aarch64 | |
Affected | pkg:rpm/redhat/mariadb-devel?arch=x86_64&distro=redhat-7.5 | redhat | mariadb-devel | < 5.5.60-1.el7_5 | redhat-7.5 | x86_64 | |
Affected | pkg:rpm/redhat/mariadb-devel?arch=s390x&distro=redhat-7.5 | redhat | mariadb-devel | < 5.5.60-1.el7_5 | redhat-7.5 | s390x | |
Affected | pkg:rpm/redhat/mariadb-devel?arch=s390&distro=redhat-7.5 | redhat | mariadb-devel | < 5.5.60-1.el7_5 | redhat-7.5 | s390 | |
Affected | pkg:rpm/redhat/mariadb-devel?arch=ppc64le&distro=redhat-7.5 | redhat | mariadb-devel | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64le | |
Affected | pkg:rpm/redhat/mariadb-devel?arch=ppc64&distro=redhat-7.5 | redhat | mariadb-devel | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64 | |
Affected | pkg:rpm/redhat/mariadb-devel?arch=ppc&distro=redhat-7.5 | redhat | mariadb-devel | < 5.5.60-1.el7_5 | redhat-7.5 | ppc | |
Affected | pkg:rpm/redhat/mariadb-devel?arch=i686&distro=redhat-7.5 | redhat | mariadb-devel | < 5.5.60-1.el7_5 | redhat-7.5 | i686 | |
Affected | pkg:rpm/redhat/mariadb-devel?arch=aarch64&distro=redhat-7.5 | redhat | mariadb-devel | < 5.5.60-1.el7_5 | redhat-7.5 | aarch64 | |
Affected | pkg:rpm/redhat/mariadb-bench?arch=x86_64&distro=redhat-7.5 | redhat | mariadb-bench | < 5.5.60-1.el7_5 | redhat-7.5 | x86_64 | |
Affected | pkg:rpm/redhat/mariadb-bench?arch=s390x&distro=redhat-7.5 | redhat | mariadb-bench | < 5.5.60-1.el7_5 | redhat-7.5 | s390x | |
Affected | pkg:rpm/redhat/mariadb-bench?arch=ppc64le&distro=redhat-7.5 | redhat | mariadb-bench | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64le | |
Affected | pkg:rpm/redhat/mariadb-bench?arch=ppc64&distro=redhat-7.5 | redhat | mariadb-bench | < 5.5.60-1.el7_5 | redhat-7.5 | ppc64 | |
Affected | pkg:rpm/redhat/mariadb-bench?arch=aarch64&distro=redhat-7.5 | redhat | mariadb-bench | < 5.5.60-1.el7_5 | redhat-7.5 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |