openSUSE-SU-2026:21409-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21409-1.json
JSON Data
https://api.osv.dev/v1/vulns/openSUSE-SU-2026:21409-1
Upstream
  • CVE-2026-44172
Related
Published
2026-07-22T08:23:18Z
Modified
2026-07-24T18:24:23Z
Summary
Security update for mariadb-connector-c
Details

This update for mariadb-connector-c fixes the following issue:

  • CVE-2026-44172: mysql_real_escape_string() incorrectly handled big5 (bsc#1266438).

Changes for mariadb-connector-c:

  • Update to release 3.4.9.

  • Update to release 3.4.8:

  • Fix compilation with GCC 15
  • CONC-762: always set is_null and length in the bind structure to avoid msan errors
  • CONC-763: add MySQL collation ID 309 (utf8mb4_0900_bin)
  • CONC-764: fix build of ma_context.c on Android (X18 is a platform-reserved register)
  • CONC-766: disable clang -Wcast-function-type-strict for makecontext
References

Affected packages

openSUSE:Leap 16.0 / mariadb-connector-c

Package

Name
mariadb-connector-c
Purl
pkg:rpm/opensuse/mariadb-connector-c&distro=openSUSE%20Leap%2016.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
3.4.9-160000.1.1

Ecosystem specific

{
    "binaries":  [
        {
            "libmariadb-devel":  "3.4.9-160000.1.1",
            "libmariadb3":  "3.4.9-160000.1.1",
            "libmariadb_plugins":  "3.4.9-160000.1.1",
            "libmariadbprivate":  "3.4.9-160000.1.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21409-1.json"