Multiple security issues were discovered in MySQL and this update includes new upstream MySQL versions to fix these issues.
MySQL has been updated to 8.0.28 in Ubuntu 20.04 LTS and Ubuntu 21.10. Ubuntu 18.04 LTS has been updated to MySQL 5.7.37.
In addition to security fixes, the updated packages contain bug fixes, new features, and possibly incompatible changes.
Please see the following for more information:
https://dev.mysql.com/doc/relnotes/mysql/5.7/en/news-5-7-37.html https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-28.html https://www.oracle.com/security-alerts/cpujan2022.html
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libmysqlclient-dev", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "libmysqlclient20", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "libmysqld-dev", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "mysql-client", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "mysql-client-5.7", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "mysql-client-core-5.7", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "mysql-server", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "mysql-server-5.7", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "mysql-server-core-5.7", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "mysql-source-5.7", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "mysql-testsuite", "binary_version": "5.7.37-0ubuntu0.18.04.1" }, { "binary_name": "mysql-testsuite-5.7", "binary_version": "5.7.37-0ubuntu0.18.04.1" } ] }
{ "cves_map": { "cves": [ { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21245" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21270" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21303" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21304" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21344" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21367" } ], "ecosystem": "Ubuntu:18.04:LTS" } }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libmysqlclient-dev", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "libmysqlclient21", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "mysql-client", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "mysql-client-8.0", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "mysql-client-core-8.0", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "mysql-router", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "mysql-server", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "mysql-server-8.0", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "mysql-server-core-8.0", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "mysql-source-8.0", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "mysql-testsuite", "binary_version": "8.0.28-0ubuntu0.20.04.3" }, { "binary_name": "mysql-testsuite-8.0", "binary_version": "8.0.28-0ubuntu0.20.04.3" } ] }
{ "cves_map": { "cves": [ { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21245" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21249" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21253" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21254" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21256" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21264" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21265" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21270" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21301" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21302" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21303" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21304" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21339" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21342" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21344" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21348" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21351" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21358" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21362" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21367" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21368" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21370" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21372" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21374" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21378" }, { "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" }, { "type": "Ubuntu", "score": "medium" } ], "id": "CVE-2022-21379" } ], "ecosystem": "Ubuntu:20.04:LTS" } }