[SUSE-SU-2018:1853-1] Recommended update for mariadb
Severity
Important
CVEs
41
Recommended update for mariadb
This MariaDB update to version 10.2.15 brings the following fixes and improvements.
Security issues:
- CVE-2018-2767: The embedded server library now supports SSL when connecting to remote servers (bsc#1088681).
- Collected CVEs fixes:
- 10.2.15: CVE-2018-2786, CVE-2018-2759, CVE-2018-2777, CVE-2018-2810, CVE-2018-2782, CVE-2018-2784, CVE-2018-2787, CVE-2018-2766, CVE-2018-2755, CVE-2018-2819, CVE-2018-2817, CVE-2018-2761, CVE-2018-2781, CVE-2018-2771, CVE-2018-2813
- 10.2.13: CVE-2018-2562, CVE-2018-2622, CVE-2018-2640, CVE-2018-2665, CVE-2018-2668, CVE-2018-2612
- 10.2.10: CVE-2017-10378, CVE-2017-10268, CVE-2017-15365
- 10.2.8: CVE-2017-3636, CVE-2017-3641, CVE-2017-3653, CVE-2017-10320, CVE-2017-10365, CVE-2017-10379, CVE-2017-10384, CVE-2017-10286, CVE-2017-3257
- 10.2.6: CVE-2017-3308, CVE-2017-3309, CVE-2017-3453, CVE-2017-3456, CVE-2017-3464
- 10.2.5: CVE-2017-3313, CVE-2017-3302
Bugfixes:
- bsc#1092544: Update suse_skipped_tests.list and add tests that are failing with GCC 8.
- bsc#1012075: MariaDB Test Suite issue with test sys_vars.secure_file_priv.test.
- bsc#1019948: mariadb even tumbleweed version is super old.
- bsc#1039034: no ODBC support in MariaDB Server.
- bsc#1041891: Make mariadb tests pass and exclude failures.
- bsc#1042632: Mariadb fails to build with openssl-1.1.
- bsc#1043328: Update mariadb in TW to 10.2 and drop comat with mysql.
- bsc#1047218: trackerbug: packages do not build reproducibly from including build time.
- bsc#1055165: mariadb build with cassandra enabled.
- bsc#1055268: MariaDB configurations are not overwritable.
- bsc#1058374: Use bind-address directive and SSL section settings in default my.cnf.
- bsc#1058729: MariaDB - mysql-test - connect.drop-open-error is failing (regression).
- bsc#1060110: The mariadb install script depends on hostname but does not require it.
- bsc#1062583: Stop using boost-devel.
- bsc#1067443: incomplete revert of the mariadb service rename.
- bsc#1068906: MariaDB: ALTER TABLE can't rename columns with CHECK constraints.
- bsc#1069401: Database failed apply with mariadb 10.2 : RuntimeError: Galera cluster did not start after 600 seconds.
- bsc#1080891: server:database/mariadb: up-streaming patches.
- bsc#1083087: Galera bootstrap failes work after MariaDB 10.2.13 upgrade.
- bsc#1082318: mariadb-connector-c.changes and xtrabackup need to use %doc instead of %license.
Release notes and changelog:
- ID
- SUSE-SU-2018:1853-1
- Severity
- important
- URL
- https://www.suse.com/support/update/announcement/2018/suse-su-20181853-1/
- Published
-
2018-06-29T15:40:54
(6 years ago) - Modified
-
2018-06-29T15:40:54
(6 years ago) - Rights
- Copyright 2024 SUSE LLC. All rights reserved.
- Other Advisories
-
- ALAS-2017-789
- ALAS-2017-790
- ALAS-2017-830
- ALAS-2017-831
- ALAS-2017-887
- ALAS-2017-888
- ALAS-2017-926
- ALAS-2017-927
- ALAS-2018-1026
- ALAS-2018-1027
- ALAS-2018-1028
- ALAS-2018-1068
- ALAS-2018-1069
- ALAS-2018-1070
- ALAS-2018-969
- ALAS2-2018-1078
- ALPINE:CVE-2017-10268
- ALPINE:CVE-2017-10378
- ALPINE:CVE-2017-15365
- ALPINE:CVE-2017-3257
- ALPINE:CVE-2017-3302
- ALPINE:CVE-2017-3308
- ALPINE:CVE-2017-3309
- ALPINE:CVE-2017-3313
- ALPINE:CVE-2017-3453
- ALPINE:CVE-2017-3456
- ALPINE:CVE-2017-3464
- ALPINE:CVE-2017-3636
- ALPINE:CVE-2017-3641
- ALPINE:CVE-2017-3653
- ALPINE:CVE-2018-2562
- ALPINE:CVE-2018-2612
- ALPINE:CVE-2018-2622
- ALPINE:CVE-2018-2640
- ALPINE:CVE-2018-2665
- ALPINE:CVE-2018-2668
- ALPINE:CVE-2018-2755
- ALPINE:CVE-2018-2759
- ALPINE:CVE-2018-2761
- ALPINE:CVE-2018-2766
- ALPINE:CVE-2018-2767
- ALPINE:CVE-2018-2771
- ALPINE:CVE-2018-2777
- ALPINE:CVE-2018-2781
- ALPINE:CVE-2018-2782
- ALPINE:CVE-2018-2784
- ALPINE:CVE-2018-2786
- ALPINE:CVE-2018-2787
- ALPINE:CVE-2018-2810
- ALPINE:CVE-2018-2813
- ALPINE:CVE-2018-2817
- ALPINE:CVE-2018-2819
- CPANSA-DBD-MariaDB-2017-01
- CPANSA-DBD-MariaDB-2018-01
- DSA-3767-1
- DSA-3770-1
- DSA-3809-1
- DSA-3834-1
- DSA-3922-1
- DSA-3944-1
- DSA-3955-1
- DSA-4002-1
- DSA-4091-1
- DSA-4176-1
- DSA-4341-1
- ELSA-2017-2192
- ELSA-2018-2439
- FEDORA-2017-09dd8907da
- FEDORA-2017-0f44f2b8c8
- FEDORA-2017-1fedb9890c
- FEDORA-2017-2c0609b92a
- FEDORA-2017-50c790aaed
- FEDORA-2017-7c039552fa
- FEDORA-2017-801e01d1ed
- FEDORA-2017-8425f676f2
- FEDORA-2017-95327e44ec
- FEDORA-2017-9e28c78e07
- FEDORA-2017-ee93493bea
- FEDORA-2017-ef6bed485e
- FEDORA-2017-fe6e14dcf9
- FEDORA-2018-00647ae0d5
- FEDORA-2018-00e90783d2
- FEDORA-2018-02c0e3725e
- FEDORA-2018-0d6a80f496
- FEDORA-2018-192148f4ff
- FEDORA-2018-2513b888a4
- FEDORA-2018-394bf4fb5a
- FEDORA-2018-3a3c660bfa
- FEDORA-2018-4ae94c8deb
- FEDORA-2018-55b875c1ac
- FEDORA-2018-7025a5c25d
- FEDORA-2018-77e610115a
- FEDORA-2018-83bbd0c22f
- FEDORA-2018-86026275ea
- FEDORA-2018-8b920c2b00
- FEDORA-2018-b4820696e1
- FEDORA-2018-d1c4a4ca50
- FEDORA-2018-d553b29a30
- FEDORA-2018-d955395c08
- FEDORA-2018-f67fda3db6
- FEDORA-2019-21b76d179e
- FREEBSD:4D2F9D09-DDB7-11E6-A9A5-B499BAEBFEAF
- FREEBSD:57AEC168-453E-11E8-8777-B499BAEBFEAF
- FREEBSD:7C27192F-0BC3-11E7-9940-B499BAEBFEAF
- FREEBSD:909BE51B-9B3B-11E8-ADD2-B499BAEBFEAF
- FREEBSD:B7D89082-E7C0-11E7-AC58-B499BAEBFEAF
- FREEBSD:C41BEDFD-B3F9-11E7-AC58-B499BAEBFEAF
- FREEBSD:CDA2F3C2-6C8B-11E7-867F-B499BAEBFEAF
- FREEBSD:D9E01C35-2531-11E7-B291-B499BAEBFEAF
- FREEBSD:E3445736-FD01-11E7-AC58-B499BAEBFEAF
- GLSA-201702-17
- GLSA-201702-18
- GLSA-201802-04
- GLSA-201908-24
- RHSA-2017:2192
- RHSA-2018:2439
- SSA:2017-018-01
- SSA:2017-087-01
- SSA:2017-195-01
- SSA:2017-251-02
- SSA:2017-306-01
- SSA:2018-032-01
- SSA:2018-130-01
- SUSE-SU-2017:0408-1
- SUSE-SU-2017:0411-1
- SUSE-SU-2017:0412-1
- SUSE-SU-2017:1137-1
- SUSE-SU-2017:1311-1
- SUSE-SU-2017:1315-1
- SUSE-SU-2017:2034-1
- SUSE-SU-2017:2035-1
- SUSE-SU-2017:2290-1
- SUSE-SU-2017:2921-1
- SUSE-SU-2017:2996-1
- SUSE-SU-2018:0079-1
- SUSE-SU-2018:0384-1
- SUSE-SU-2018:0422-1
- SUSE-SU-2018:0697-1
- SUSE-SU-2018:0698-1
- SUSE-SU-2018:1333-1
- SUSE-SU-2018:1382-1
- SUSE-SU-2018:1771-1
- SUSE-SU-2018:1781-1
- SUSE-SU-2018:1781-2
- SUSE-SU-2019:1441-1
- USN-3174-1
- USN-3269-1
- USN-3357-1
- USN-3357-2
- USN-3459-1
- USN-3459-2
- USN-3537-1
- USN-3537-2
- USN-3629-1
- USN-3629-2
- USN-3629-3
- USN-3725-1
- USN-3725-2
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |