SUSE-SU-2019:2461-1

Source
https://www.suse.com/support/update/announcement/2019/suse-su-20192461-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2019:2461-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2019:2461-1
Related
Published
2019-09-25T14:42:54Z
Modified
2019-09-25T14:42:54Z
Summary
Security update for mariadb
Details

This update for mariadb fixes the following issues:

Updated to MariaDB 10.0.40-1.

Security issues fixed:

  • CVE-2019-2805, CVE-2019-2740, CVE-2019-2739, CVE-2019-2737, CVE-2019-2614, CVE-2019-2627. (bsc#1132826) (bsc#1141798).

Non-security issues fixed:

  • Adjusted mysql-systemd-helper ('shutdown protected MySQL' section) so it checks both ping response and the pid in a process list as it can take some time till the process is terminated. Otherwise it can lead to 'found left-over process' situation when regular mariadb is started. (bsc#1143215)
  • Fixed IP resolving in mysqlinstalldb script. (bsc#1142058, bsc#1127027, MDEV-18526)
References

Affected packages

SUSE:HPE Helion OpenStack 8 / mariadb

Package

Name
mariadb
Purl
purl:rpm/suse/mariadb&distro=HPE%20Helion%20OpenStack%208

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.0.40.1-29.32.1

Ecosystem specific

{
    "binaries": [
        {
            "libmysqlclient18": "10.0.40.1-29.32.1"
        }
    ]
}

SUSE:OpenStack Cloud 8 / mariadb

Package

Name
mariadb
Purl
purl:rpm/suse/mariadb&distro=SUSE%20OpenStack%20Cloud%208

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.0.40.1-29.32.1

Ecosystem specific

{
    "binaries": [
        {
            "libmysqlclient18": "10.0.40.1-29.32.1"
        }
    ]
}

SUSE:OpenStack Cloud Crowbar 8 / mariadb

Package

Name
mariadb
Purl
purl:rpm/suse/mariadb&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.0.40.1-29.32.1

Ecosystem specific

{
    "binaries": [
        {
            "libmysqlclient18": "10.0.40.1-29.32.1"
        }
    ]
}