[SUSE-SU-2018:1382-1] Security update for mariadb

Severity Important
Affected Packages 29
CVEs 12

Security update for mariadb

MariaDB was updated to 10.0.35 (bsc#1090518)

Notable changes:

  • PCRE updated to 8.42
  • XtraDB updated to 5.6.39-83.1
  • TokuDB updated to 5.6.39-83.1
  • InnoDB updated to 5.6.40
  • The embedded server library now supports SSL when connecting to remote servers [bsc#1088681], [CVE-2018-2767]
  • MDEV-15249 - Crash in MVCC read after IMPORT TABLESPACE
  • MDEV-14988 - innodb_read_only tries to modify files if transactions were recovered in COMMITTED state
  • MDEV-14773 - DROP TABLE hangs for InnoDB table with FULLTEXT index
  • MDEV-15723 - Crash in INFORMATION_SCHEMA.INNODB_SYS_TABLES when accessing corrupted record
  • fixes for the following security vulnerabilities: CVE-2018-2782, CVE-2018-2784, CVE-2018-2787, CVE-2018-2766, CVE-2018-2755, CVE-2018-2819, CVE-2018-2817, CVE-2018-2761, CVE-2018-2781, CVE-2018-2771, CVE-2018-2813
  • Release notes and changelog:

Package Affected Version
pkg:rpm/suse/mariadb?arch=x86_64&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb?arch=s390x&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb?arch=ppc64le&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb-tools?arch=x86_64&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb-tools?arch=s390x&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb-tools?arch=ppc64le&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb-errormessages?arch=x86_64&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb-errormessages?arch=s390x&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb-errormessages?arch=ppc64le&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb-client?arch=x86_64&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb-client?arch=s390x&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/mariadb-client?arch=ppc64le&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqld18?arch=x86_64&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqld18?arch=s390x&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqld18?arch=ppc64le&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqld-devel?arch=x86_64&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqld-devel?arch=s390x&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqld-devel?arch=ppc64le&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient_r18?arch=x86_64&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient_r18?arch=s390x&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient_r18?arch=ppc64le&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient18?arch=x86_64&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient18?arch=s390x&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient18?arch=ppc64le&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient18-32bit?arch=x86_64&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient18-32bit?arch=s390x&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient-devel?arch=x86_64&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient-devel?arch=s390x&distro=sles-12 < 10.0.35-20.46.1
pkg:rpm/suse/libmysqlclient-devel?arch=ppc64le&distro=sles-12 < 10.0.35-20.46.1
Source # ID Name URL
Suse SUSE ratings https://www.suse.com/support/security/rating/
Suse URL of this CSAF notice https://ftp.suse.com/pub/projects/security/csaf/suse-su-2018_1382-1.json
Suse URL for SUSE-SU-2018:1382-1 https://www.suse.com/support/update/announcement/2018/suse-su-20181382-1/
Suse E-Mail link for SUSE-SU-2018:1382-1 https://lists.suse.com/pipermail/sle-security-updates/2018-May/004081.html
Bugzilla SUSE Bug 1088681 https://bugzilla.suse.com/1088681
Bugzilla SUSE Bug 1090518 https://bugzilla.suse.com/1090518
CVE SUSE CVE CVE-2018-2755 page https://www.suse.com/security/cve/CVE-2018-2755/
CVE SUSE CVE CVE-2018-2761 page https://www.suse.com/security/cve/CVE-2018-2761/
CVE SUSE CVE CVE-2018-2766 page https://www.suse.com/security/cve/CVE-2018-2766/
CVE SUSE CVE CVE-2018-2767 page https://www.suse.com/security/cve/CVE-2018-2767/
CVE SUSE CVE CVE-2018-2771 page https://www.suse.com/security/cve/CVE-2018-2771/
CVE SUSE CVE CVE-2018-2781 page https://www.suse.com/security/cve/CVE-2018-2781/
CVE SUSE CVE CVE-2018-2782 page https://www.suse.com/security/cve/CVE-2018-2782/
CVE SUSE CVE CVE-2018-2784 page https://www.suse.com/security/cve/CVE-2018-2784/
CVE SUSE CVE CVE-2018-2787 page https://www.suse.com/security/cve/CVE-2018-2787/
CVE SUSE CVE CVE-2018-2813 page https://www.suse.com/security/cve/CVE-2018-2813/
CVE SUSE CVE CVE-2018-2817 page https://www.suse.com/security/cve/CVE-2018-2817/
CVE SUSE CVE CVE-2018-2819 page https://www.suse.com/security/cve/CVE-2018-2819/
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/mariadb?arch=x86_64&distro=sles-12 suse mariadb < 10.0.35-20.46.1 sles-12 x86_64
Affected pkg:rpm/suse/mariadb?arch=s390x&distro=sles-12 suse mariadb < 10.0.35-20.46.1 sles-12 s390x
Affected pkg:rpm/suse/mariadb?arch=ppc64le&distro=sles-12 suse mariadb < 10.0.35-20.46.1 sles-12 ppc64le
Affected pkg:rpm/suse/mariadb-tools?arch=x86_64&distro=sles-12 suse mariadb-tools < 10.0.35-20.46.1 sles-12 x86_64
Affected pkg:rpm/suse/mariadb-tools?arch=s390x&distro=sles-12 suse mariadb-tools < 10.0.35-20.46.1 sles-12 s390x
Affected pkg:rpm/suse/mariadb-tools?arch=ppc64le&distro=sles-12 suse mariadb-tools < 10.0.35-20.46.1 sles-12 ppc64le
Affected pkg:rpm/suse/mariadb-errormessages?arch=x86_64&distro=sles-12 suse mariadb-errormessages < 10.0.35-20.46.1 sles-12 x86_64
Affected pkg:rpm/suse/mariadb-errormessages?arch=s390x&distro=sles-12 suse mariadb-errormessages < 10.0.35-20.46.1 sles-12 s390x
Affected pkg:rpm/suse/mariadb-errormessages?arch=ppc64le&distro=sles-12 suse mariadb-errormessages < 10.0.35-20.46.1 sles-12 ppc64le
Affected pkg:rpm/suse/mariadb-client?arch=x86_64&distro=sles-12 suse mariadb-client < 10.0.35-20.46.1 sles-12 x86_64
Affected pkg:rpm/suse/mariadb-client?arch=s390x&distro=sles-12 suse mariadb-client < 10.0.35-20.46.1 sles-12 s390x
Affected pkg:rpm/suse/mariadb-client?arch=ppc64le&distro=sles-12 suse mariadb-client < 10.0.35-20.46.1 sles-12 ppc64le
Affected pkg:rpm/suse/libmysqld18?arch=x86_64&distro=sles-12 suse libmysqld18 < 10.0.35-20.46.1 sles-12 x86_64
Affected pkg:rpm/suse/libmysqld18?arch=s390x&distro=sles-12 suse libmysqld18 < 10.0.35-20.46.1 sles-12 s390x
Affected pkg:rpm/suse/libmysqld18?arch=ppc64le&distro=sles-12 suse libmysqld18 < 10.0.35-20.46.1 sles-12 ppc64le
Affected pkg:rpm/suse/libmysqld-devel?arch=x86_64&distro=sles-12 suse libmysqld-devel < 10.0.35-20.46.1 sles-12 x86_64
Affected pkg:rpm/suse/libmysqld-devel?arch=s390x&distro=sles-12 suse libmysqld-devel < 10.0.35-20.46.1 sles-12 s390x
Affected pkg:rpm/suse/libmysqld-devel?arch=ppc64le&distro=sles-12 suse libmysqld-devel < 10.0.35-20.46.1 sles-12 ppc64le
Affected pkg:rpm/suse/libmysqlclient_r18?arch=x86_64&distro=sles-12 suse libmysqlclient_r18 < 10.0.35-20.46.1 sles-12 x86_64
Affected pkg:rpm/suse/libmysqlclient_r18?arch=s390x&distro=sles-12 suse libmysqlclient_r18 < 10.0.35-20.46.1 sles-12 s390x
Affected pkg:rpm/suse/libmysqlclient_r18?arch=ppc64le&distro=sles-12 suse libmysqlclient_r18 < 10.0.35-20.46.1 sles-12 ppc64le
Affected pkg:rpm/suse/libmysqlclient18?arch=x86_64&distro=sles-12 suse libmysqlclient18 < 10.0.35-20.46.1 sles-12 x86_64
Affected pkg:rpm/suse/libmysqlclient18?arch=s390x&distro=sles-12 suse libmysqlclient18 < 10.0.35-20.46.1 sles-12 s390x
Affected pkg:rpm/suse/libmysqlclient18?arch=ppc64le&distro=sles-12 suse libmysqlclient18 < 10.0.35-20.46.1 sles-12 ppc64le
Affected pkg:rpm/suse/libmysqlclient18-32bit?arch=x86_64&distro=sles-12 suse libmysqlclient18-32bit < 10.0.35-20.46.1 sles-12 x86_64
Affected pkg:rpm/suse/libmysqlclient18-32bit?arch=s390x&distro=sles-12 suse libmysqlclient18-32bit < 10.0.35-20.46.1 sles-12 s390x
Affected pkg:rpm/suse/libmysqlclient-devel?arch=x86_64&distro=sles-12 suse libmysqlclient-devel < 10.0.35-20.46.1 sles-12 x86_64
Affected pkg:rpm/suse/libmysqlclient-devel?arch=s390x&distro=sles-12 suse libmysqlclient-devel < 10.0.35-20.46.1 sles-12 s390x
Affected pkg:rpm/suse/libmysqlclient-devel?arch=ppc64le&distro=sles-12 suse libmysqlclient-devel < 10.0.35-20.46.1 sles-12 ppc64le
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...