[SUSE-SU-2016:0296-1] Security update for mariadb

Severity Moderate
Affected Packages 24
CVEs 12

Security update for mariadb

MariaDB has been updated to version 10.0.22, which brings fixes for many security
issues and other improvements.

The following CVEs have been fixed:

  • 10.0.22: CVE-2015-4802, CVE-2015-4807, CVE-2015-4815, CVE-2015-4826, CVE-2015-4830, CVE-2015-4836, CVE-2015-4858, CVE-2015-4861, CVE-2015-4870, CVE-2015-4913, CVE-2015-4792
  • Fix information leak via mysql-systemd-helper script. (CVE-2015-5969, bsc#957174)

For a comprehensive list of changes refer to the upstream Release Notes and Change
Log documents:

Package Affected Version
pkg:rpm/suse/mariadb?arch=x86_64&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb?arch=x86_64&distro=sled-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb?arch=s390x&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb?arch=ppc64le&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-tools?arch=x86_64&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-tools?arch=s390x&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-tools?arch=ppc64le&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-errormessages?arch=x86_64&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-errormessages?arch=x86_64&distro=sled-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-errormessages?arch=s390x&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-errormessages?arch=ppc64le&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-client?arch=x86_64&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-client?arch=x86_64&distro=sled-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-client?arch=s390x&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/mariadb-client?arch=ppc64le&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/libmysqlclient_r18?arch=x86_64&distro=sled-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/libmysqlclient_r18-32bit?arch=x86_64&distro=sled-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/libmysqlclient18?arch=x86_64&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/libmysqlclient18?arch=x86_64&distro=sled-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/libmysqlclient18?arch=s390x&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/libmysqlclient18?arch=ppc64le&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/libmysqlclient18-32bit?arch=x86_64&distro=sles-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/libmysqlclient18-32bit?arch=x86_64&distro=sled-12&sp=1 < 10.0.22-3.1
pkg:rpm/suse/libmysqlclient18-32bit?arch=s390x&distro=sles-12&sp=1 < 10.0.22-3.1
Source # ID Name URL
Suse SUSE ratings https://www.suse.com/support/security/rating/
Suse URL of this CSAF notice https://ftp.suse.com/pub/projects/security/csaf/suse-su-2016_0296-1.json
Suse URL for SUSE-SU-2016:0296-1 https://www.suse.com/support/update/announcement/2016/suse-su-20160296-1/
Suse E-Mail link for SUSE-SU-2016:0296-1 https://lists.suse.com/pipermail/sle-security-updates/2016-February/001838.html
Bugzilla SUSE Bug 937787 https://bugzilla.suse.com/937787
Bugzilla SUSE Bug 957174 https://bugzilla.suse.com/957174
Bugzilla SUSE Bug 958789 https://bugzilla.suse.com/958789
CVE SUSE CVE CVE-2015-4792 page https://www.suse.com/security/cve/CVE-2015-4792/
CVE SUSE CVE CVE-2015-4802 page https://www.suse.com/security/cve/CVE-2015-4802/
CVE SUSE CVE CVE-2015-4807 page https://www.suse.com/security/cve/CVE-2015-4807/
CVE SUSE CVE CVE-2015-4815 page https://www.suse.com/security/cve/CVE-2015-4815/
CVE SUSE CVE CVE-2015-4826 page https://www.suse.com/security/cve/CVE-2015-4826/
CVE SUSE CVE CVE-2015-4830 page https://www.suse.com/security/cve/CVE-2015-4830/
CVE SUSE CVE CVE-2015-4836 page https://www.suse.com/security/cve/CVE-2015-4836/
CVE SUSE CVE CVE-2015-4858 page https://www.suse.com/security/cve/CVE-2015-4858/
CVE SUSE CVE CVE-2015-4861 page https://www.suse.com/security/cve/CVE-2015-4861/
CVE SUSE CVE CVE-2015-4870 page https://www.suse.com/security/cve/CVE-2015-4870/
CVE SUSE CVE CVE-2015-4913 page https://www.suse.com/security/cve/CVE-2015-4913/
CVE SUSE CVE CVE-2015-5969 page https://www.suse.com/security/cve/CVE-2015-5969/
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/mariadb?arch=x86_64&distro=sles-12&sp=1 suse mariadb < 10.0.22-3.1 sles-12 x86_64
Affected pkg:rpm/suse/mariadb?arch=x86_64&distro=sled-12&sp=1 suse mariadb < 10.0.22-3.1 sled-12 x86_64
Affected pkg:rpm/suse/mariadb?arch=s390x&distro=sles-12&sp=1 suse mariadb < 10.0.22-3.1 sles-12 s390x
Affected pkg:rpm/suse/mariadb?arch=ppc64le&distro=sles-12&sp=1 suse mariadb < 10.0.22-3.1 sles-12 ppc64le
Affected pkg:rpm/suse/mariadb-tools?arch=x86_64&distro=sles-12&sp=1 suse mariadb-tools < 10.0.22-3.1 sles-12 x86_64
Affected pkg:rpm/suse/mariadb-tools?arch=s390x&distro=sles-12&sp=1 suse mariadb-tools < 10.0.22-3.1 sles-12 s390x
Affected pkg:rpm/suse/mariadb-tools?arch=ppc64le&distro=sles-12&sp=1 suse mariadb-tools < 10.0.22-3.1 sles-12 ppc64le
Affected pkg:rpm/suse/mariadb-errormessages?arch=x86_64&distro=sles-12&sp=1 suse mariadb-errormessages < 10.0.22-3.1 sles-12 x86_64
Affected pkg:rpm/suse/mariadb-errormessages?arch=x86_64&distro=sled-12&sp=1 suse mariadb-errormessages < 10.0.22-3.1 sled-12 x86_64
Affected pkg:rpm/suse/mariadb-errormessages?arch=s390x&distro=sles-12&sp=1 suse mariadb-errormessages < 10.0.22-3.1 sles-12 s390x
Affected pkg:rpm/suse/mariadb-errormessages?arch=ppc64le&distro=sles-12&sp=1 suse mariadb-errormessages < 10.0.22-3.1 sles-12 ppc64le
Affected pkg:rpm/suse/mariadb-client?arch=x86_64&distro=sles-12&sp=1 suse mariadb-client < 10.0.22-3.1 sles-12 x86_64
Affected pkg:rpm/suse/mariadb-client?arch=x86_64&distro=sled-12&sp=1 suse mariadb-client < 10.0.22-3.1 sled-12 x86_64
Affected pkg:rpm/suse/mariadb-client?arch=s390x&distro=sles-12&sp=1 suse mariadb-client < 10.0.22-3.1 sles-12 s390x
Affected pkg:rpm/suse/mariadb-client?arch=ppc64le&distro=sles-12&sp=1 suse mariadb-client < 10.0.22-3.1 sles-12 ppc64le
Affected pkg:rpm/suse/libmysqlclient_r18?arch=x86_64&distro=sled-12&sp=1 suse libmysqlclient_r18 < 10.0.22-3.1 sled-12 x86_64
Affected pkg:rpm/suse/libmysqlclient_r18-32bit?arch=x86_64&distro=sled-12&sp=1 suse libmysqlclient_r18-32bit < 10.0.22-3.1 sled-12 x86_64
Affected pkg:rpm/suse/libmysqlclient18?arch=x86_64&distro=sles-12&sp=1 suse libmysqlclient18 < 10.0.22-3.1 sles-12 x86_64
Affected pkg:rpm/suse/libmysqlclient18?arch=x86_64&distro=sled-12&sp=1 suse libmysqlclient18 < 10.0.22-3.1 sled-12 x86_64
Affected pkg:rpm/suse/libmysqlclient18?arch=s390x&distro=sles-12&sp=1 suse libmysqlclient18 < 10.0.22-3.1 sles-12 s390x
Affected pkg:rpm/suse/libmysqlclient18?arch=ppc64le&distro=sles-12&sp=1 suse libmysqlclient18 < 10.0.22-3.1 sles-12 ppc64le
Affected pkg:rpm/suse/libmysqlclient18-32bit?arch=x86_64&distro=sles-12&sp=1 suse libmysqlclient18-32bit < 10.0.22-3.1 sles-12 x86_64
Affected pkg:rpm/suse/libmysqlclient18-32bit?arch=x86_64&distro=sled-12&sp=1 suse libmysqlclient18-32bit < 10.0.22-3.1 sled-12 x86_64
Affected pkg:rpm/suse/libmysqlclient18-32bit?arch=s390x&distro=sles-12&sp=1 suse libmysqlclient18-32bit < 10.0.22-3.1 sles-12 s390x
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...