Oval Definition:oval:org.opensuse.security:def:56663
Revision Date:2020-12-01Version:1
Title:Security update for mariadb (Moderate)
Description:

This update for mariadb to version 10.0.33 fixes several issues.

These security issues were fixed:

- CVE-2017-10378: Vulnerability in subcomponent: Server: Optimizer. Easily exploitable vulnerability allowed low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server (bsc#1064115). - CVE-2017-10268: Vulnerability in subcomponent: Server: Replication. Difficult to exploit vulnerability allowed high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Server accessible data (bsc#1064101).

These non-security issues were fixed:

- CHECK TABLE no longer returns an error when run on a CONNECT table - 'Undo log record is too big.' error occurring in very narrow range of string lengths - Race condition between INFORMATION_SCHEMA.INNODB_SYS_TABLESTATS and ALTER/DROP/TRUNCATE TABLE - Wrong result after altering a partitioned table fixed bugs in InnoDB FULLTEXT INDEX - InnoDB FTS duplicate key error - InnoDB crash after failed ADD INDEX and table_definition_cache eviction - fts_create_doc_id() unnecessarily allocates 8 bytes for every inserted row - IMPORT TABLESPACE may corrupt ROW_FORMAT=REDUNDANT tables

For additional details please see https://kb.askmonty.org/en/mariadb-10033-changelog
Family:unixClass:patch
Status:Reference(s):1005522
1005523
1005524
1005525
1005526
1005527
1005528
1009254
1012260
1021577
1026191
1035829
1041469
1041830
1041894
1043484
1043607
1045060
1045062
1045065
1045327
1048576
1049703
1054986
1057950
1058722
1061204
1064101
1064115
1064786
1065464
1066489
1067018
1070615
1071853
1073210
1075812
1076505
1078436
1079869
1080042
1082041
1082161
1083625
1085757
1086038
1091551
1092697
1093536
1094462
1094767
1096515
1107343
1107874
1108771
1108986
1109363
1109465
1109845
1110506
1110507
1111622
1118319
1118320
1122668
1123053
1126088
1126140
1126141
1126192
1126195
1126196
1126198
1126201
1126428
1127400
1129729
1132666
1136035
1143215
1143797
1146874
1149813
1152916
1155089
1155787
1173144
703591
839074
857131
893359
950437
960382
982366
984684
988651
989722
989723
989725
989727
989728
989729
989730
989731
989732
989733
989734
CVE-2012-5112
CVE-2012-5133
CVE-2014-1344
CVE-2014-1384
CVE-2014-1385
CVE-2014-1386
CVE-2014-1387
CVE-2014-1388
CVE-2014-1389
CVE-2014-1390
CVE-2014-1748
CVE-2015-1071
CVE-2015-1076
CVE-2015-1081
CVE-2015-1083
CVE-2015-1120
CVE-2015-1122
CVE-2015-1127
CVE-2015-1153
CVE-2015-1155
CVE-2015-2330
CVE-2015-3658
CVE-2015-3659
CVE-2015-3727
CVE-2015-3731
CVE-2015-3741
CVE-2015-3743
CVE-2015-3745
CVE-2015-3747
CVE-2015-3748
CVE-2015-3749
CVE-2015-3752
CVE-2015-5788
CVE-2015-5794
CVE-2015-5801
CVE-2015-5809
CVE-2015-5822
CVE-2015-5928
CVE-2015-7830
CVE-2015-8711
CVE-2015-8712
CVE-2015-8713
CVE-2015-8714
CVE-2015-8715
CVE-2015-8716
CVE-2015-8717
CVE-2015-8718
CVE-2015-8719
CVE-2015-8720
CVE-2015-8721
CVE-2015-8722
CVE-2015-8723
CVE-2015-8724
CVE-2015-8725
CVE-2015-8726
CVE-2015-8727
CVE-2015-8728
CVE-2015-8729
CVE-2015-8730
CVE-2015-8731
CVE-2015-8732
CVE-2015-8733
CVE-2016-3458
CVE-2016-3485
CVE-2016-3498
CVE-2016-3500
CVE-2016-3503
CVE-2016-3508
CVE-2016-3511
CVE-2016-3550
CVE-2016-3598
CVE-2016-3606
CVE-2016-3610
CVE-2016-5542
CVE-2016-5554
CVE-2016-5556
CVE-2016-5568
CVE-2016-5573
CVE-2016-5582
CVE-2016-5597
CVE-2017-1000251
CVE-2017-1002201
CVE-2017-10268
CVE-2017-10378
CVE-2017-15274
CVE-2017-16541
CVE-2017-2518
CVE-2017-3167
CVE-2017-3169
CVE-2017-5715
CVE-2017-7679
CVE-2017-9788
CVE-2018-1064
CVE-2018-10811
CVE-2018-12376
CVE-2018-12377
CVE-2018-12378
CVE-2018-12379
CVE-2018-12381
CVE-2018-12383
CVE-2018-12385
CVE-2018-12386
CVE-2018-12387
CVE-2018-16151
CVE-2018-16152
CVE-2018-17540
CVE-2018-18074
CVE-2018-5388
CVE-2018-6764
CVE-2018-9568
CVE-2019-12068
CVE-2019-14378
CVE-2019-15890
CVE-2019-17340
CVE-2019-17341
CVE-2019-17342
CVE-2019-17343
CVE-2019-17344
CVE-2019-17346
CVE-2019-17347
CVE-2019-17348
CVE-2019-2614
CVE-2019-2627
CVE-2019-2628
CVE-2020-8163
SUSE-SU-2016:0109-1
SUSE-SU-2016:1997-1
SUSE-SU-2016:2887-1
SUSE-SU-2017:2449-1
SUSE-SU-2017:2793-1
SUSE-SU-2018:0384-1
SUSE-SU-2018:0920-1
SUSE-SU-2018:3591-1
SUSE-SU-2019:2783-1
SUSE-SU-2019:3050-1
SUSE-SU-2019:3266-1
SUSE-SU-2019:3270-1
SUSE-SU-2020:0555-1
SUSE-SU-2020:2140-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 6-LTSS
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • kinit-5.45.0-lp150.1 is installed
  • OR kinit-lang-5.45.0-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • aubio-0.4.6-lp151.6.3 is installed
  • OR aubio-tools-0.4.6-lp151.6.3 is installed
  • OR libaubio-devel-0.4.6-lp151.6.3 is installed
  • OR libaubio5-0.4.6-lp151.6.3 is installed
  • OR libaubio5-32bit-0.4.6-lp151.6.3 is installed
  • OR python-aubio-0.4.6-lp151.6.3 is installed
  • OR python2-aubio-0.4.6-lp151.6.3 is installed
  • OR python3-aubio-0.4.6-lp151.6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • libmysqlclient18-10.0.33-29.13 is installed
  • OR libmysqlclient18-32bit-10.0.33-29.13 is installed
  • OR libmysqlclient_r18-10.0.33-29.13 is installed
  • OR libmysqlclient_r18-32bit-10.0.33-29.13 is installed
  • OR mariadb-10.0.33-29.13 is installed
  • OR mariadb-client-10.0.33-29.13 is installed
  • OR mariadb-errormessages-10.0.33-29.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • java-1_7_0-openjdk-1.7.0.111-33 is installed
  • OR java-1_7_0-openjdk-demo-1.7.0.111-33 is installed
  • OR java-1_7_0-openjdk-devel-1.7.0.111-33 is installed
  • OR java-1_7_0-openjdk-headless-1.7.0.111-33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_48-default-4-4 is installed
  • OR kgraft-patch-3_12_74-60_64_48-xen-4-4 is installed
  • OR kgraft-patch-SLE12-SP1_Update_17-4-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libjavascriptcoregtk-3_0-0-2.4.11-23 is installed
  • OR libwebkitgtk-3_0-0-2.4.11-23 is installed
  • OR libwebkitgtk3-lang-2.4.11-23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • ghostscript-9.26a-23.19 is installed
  • OR ghostscript-x11-9.26a-23.19 is installed
  • OR libspectre-0.2.7-12.6 is installed
  • OR libspectre1-0.2.7-12.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libdcerpc-atsvc0-4.2.4-28.29 is installed
  • OR samba-4.2.4-28.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_59-92_20-default-12-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_8-12-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • guestfs-data-1.32.4-19 is installed
  • OR guestfs-tools-1.32.4-19 is installed
  • OR guestfsd-1.32.4-19 is installed
  • OR libguestfs0-1.32.4-19 is installed
  • OR perl-Sys-Guestfs-1.32.4-19 is installed
  • OR python-libguestfs-1.32.4-19 is installed
  • OR virt-p2v-1.32.4-19 is installed
  • OR virt-v2v-1.32.4-19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libmysqlclient18-10.0.40.2-29.35 is installed
  • OR libmysqlclient18-32bit-10.0.40.2-29.35 is installed
  • OR mariadb-10.0.40.2-29.35 is installed
  • OR mariadb-client-10.0.40.2-29.35 is installed
  • OR mariadb-errormessages-10.0.40.2-29.35 is installed
  • OR mariadb-tools-10.0.40.2-29.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • libpython3_4m1_0-3.4.6-25.29 is installed
  • OR python3-3.4.6-25.29 is installed
  • OR python3-base-3.4.6-25.29 is installed
  • OR python3-curses-3.4.6-25.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND gd-2.1.0-24.9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • apache2-2.4.16-20.10 is installed
  • OR apache2-doc-2.4.16-20.10 is installed
  • OR apache2-example-pages-2.4.16-20.10 is installed
  • OR apache2-prefork-2.4.16-20.10 is installed
  • OR apache2-utils-2.4.16-20.10 is installed
  • OR apache2-worker-2.4.16-20.10 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6-LTSS is installed
  • AND Package Information
  • ruby2.1-rubygem-actionview-4_2-4.2.9-9.9 is installed
  • OR ruby2.1-rubygem-activesupport-4_2-4.2.9-7.6 is installed
  • OR rubygem-actionview-4_2-4.2.9-9.9 is installed
  • OR rubygem-activesupport-4_2-4.2.9-7.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • MozillaFirefox-60.2.2esr-109.46 is installed
  • OR MozillaFirefox-branding-SLE-60-32.3 is installed
  • OR MozillaFirefox-devel-60.2.2esr-109.46 is installed
  • OR MozillaFirefox-translations-common-60.2.2esr-109.46 is installed
  • OR apache2-mod_nss-1.0.14-19.6 is installed
  • OR libfreebl3-3.36.4-58.15 is installed
  • OR libfreebl3-32bit-3.36.4-58.15 is installed
  • OR libfreebl3-hmac-3.36.4-58.15 is installed
  • OR libfreebl3-hmac-32bit-3.36.4-58.15 is installed
  • OR libsoftokn3-3.36.4-58.15 is installed
  • OR libsoftokn3-32bit-3.36.4-58.15 is installed
  • OR libsoftokn3-hmac-3.36.4-58.15 is installed
  • OR libsoftokn3-hmac-32bit-3.36.4-58.15 is installed
  • OR mozilla-nspr-4.19-19.3 is installed
  • OR mozilla-nspr-32bit-4.19-19.3 is installed
  • OR mozilla-nss-3.36.4-58.15 is installed
  • OR mozilla-nss-32bit-3.36.4-58.15 is installed
  • OR mozilla-nss-certs-3.36.4-58.15 is installed
  • OR mozilla-nss-certs-32bit-3.36.4-58.15 is installed
  • OR mozilla-nss-sysinit-3.36.4-58.15 is installed
  • OR mozilla-nss-sysinit-32bit-3.36.4-58.15 is installed
  • OR mozilla-nss-tools-3.36.4-58.15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND haproxy-1.6.11-11.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND nodejs6-6.16.0-11.21 is installed
  • BACK