Oval Definition:oval:org.opensuse.security:def:63655
Revision Date:2020-12-01Version:1
Title:Security update for mariadb (Important)
Description:

This update for mariadb fixes the following issues:

Update to MariaDB 10.0.37 GA (bsc#1116686).

Security issues fixed:

- CVE-2018-3282: Server Storage Engines unspecified vulnerability (CPU Oct 2018) (bsc#1112432) - CVE-2018-3251: InnoDB unspecified vulnerability (CPU Oct 2018) (bsc#1112397) - CVE-2018-3174: Client programs unspecified vulnerability (CPU Oct 2018) (bsc#1112368) - CVE-2018-3156: InnoDB unspecified vulnerability (CPU Oct 2018) (bsc#1112417) - CVE-2018-3143: InnoDB unspecified vulnerability (CPU Oct 2018) (bsc#1112421) - CVE-2018-3066: Unspecified vulnerability in the MySQL Server component of Oracle MySQL (subcomponent Server Options). (bsc#1101678) - CVE-2018-3064: InnoDB unspecified vulnerability (CPU Jul 2018) (bsc#1103342) - CVE-2018-3063: Unspecified vulnerability in the MySQL Server component of Oracle MySQL (subcomponent Server Security Privileges). (bsc#1101677) - CVE-2018-3058: Unspecified vulnerability in the MySQL Server component of Oracle MySQL (subcomponent MyISAM). (bsc#1101676) - CVE-2016-9843: Big-endian out-of-bounds pointer (bsc#1013882)

Non-security changes:

- Remove PerconaFT from the package as it has AGPL licence (bsc#1118754) - do not just remove tokudb plugin but don't build it at all (missing jemalloc dependency)

Release notes and changelog:

- https://kb.askmonty.org/en/mariadb-10037-release-notes - https://kb.askmonty.org/en/mariadb-10037-changelog - https://kb.askmonty.org/en/mariadb-10036-release-notes - https://kb.askmonty.org/en/mariadb-10036-changelog
Family:unixClass:patch
Status:Reference(s):1010783
1013882
1100053
1101676
1101677
1101678
1103342
1108606
1111331
1112368
1112397
1112417
1112421
1112432
1116686
1117001
1117260
1117505
1117507
1117508
1117511
1118754
1121626
1125113
1133997
1134001
1146608
1166403
1166484
1166751
1167890
1168930
1171921
1174628
1178593
983268
CVE-2016-5102
CVE-2016-9396
CVE-2016-9843
CVE-2017-18926
CVE-2018-10886
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-17000
CVE-2018-19416
CVE-2018-19517
CVE-2018-19539
CVE-2018-19540
CVE-2018-19541
CVE-2018-19542
CVE-2018-3058
CVE-2018-3063
CVE-2018-3064
CVE-2018-3066
CVE-2018-3143
CVE-2018-3156
CVE-2018-3174
CVE-2018-3251
CVE-2018-3282
CVE-2019-11091
CVE-2019-14973
CVE-2019-6128
CVE-2019-7663
CVE-2020-0556
CVE-2020-10753
CVE-2020-14344
CVE-2020-1759
CVE-2020-1760
CVE-2020-5260
openSUSE-SU-2020:0494-1
openSUSE-SU-2020:0872-1
openSUSE-SU-2020:0898-1
openSUSE-SU-2020:1198-1
SUSE-SU-2018:4211-1
SUSE-SU-2019:1326-1
SUSE-SU-2019:1954-1
SUSE-SU-2019:2513-1
SUSE-SU-2019:3058-1
SUSE-SU-2020:0992-1
SUSE-SU-2020:1351-1
SUSE-SU-2020:3351-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-LTSS
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libX11-1.6.5-lp151.4.6 is installed
  • OR libX11-6-1.6.5-lp151.4.6 is installed
  • OR libX11-6-32bit-1.6.5-lp151.4.6 is installed
  • OR libX11-data-1.6.5-lp151.4.6 is installed
  • OR libX11-devel-1.6.5-lp151.4.6 is installed
  • OR libX11-devel-32bit-1.6.5-lp151.4.6 is installed
  • OR libX11-xcb1-1.6.5-lp151.4.6 is installed
  • OR libX11-xcb1-32bit-1.6.5-lp151.4.6 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • bluez-5.48-lp152.12.3 is installed
  • OR bluez-auto-enable-devices-5.48-lp152.12.3 is installed
  • OR bluez-cups-5.48-lp152.12.3 is installed
  • OR bluez-devel-5.48-lp152.12.3 is installed
  • OR bluez-devel-32bit-5.48-lp152.12.3 is installed
  • OR bluez-test-5.48-lp152.12.3 is installed
  • OR libbluetooth3-5.48-lp152.12.3 is installed
  • OR libbluetooth3-32bit-5.48-lp152.12.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libmysqlclient18-10.0.37-2.3 is installed
  • OR libmysqlclient18-32bit-10.0.37-2.3 is installed
  • OR mariadb-100-10.0.37-2.3 is installed
  • OR mariadb-100-errormessages-10.0.37-2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • libraptor2-0-2.0.15-5.3 is installed
  • OR raptor-2.0.15-5.3 is installed
  • BACK