Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
80e7367c by Salvatore Bonaccorso at 2021-06-19T11:49:52+02:00
mariadb-10.3 upload for buster 10.10 includes three CVE fixes
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -16983,7 +16983,7 @@ CVE-2021-27928 (A remote code execution issue was
discovered in MariaDB 10.2 bef
{DLA-2605-1}
- mariadb-10.5 1:10.5.9-1
- mariadb-10.3 <removed>
- [buster] - mariadb-10.3 <no-dsa> (Minor issue)
+ [buster] - mariadb-10.3 1:10.3.29-0+deb10u1
- mariadb-10.1 <removed>
NOTE: https://jira.mariadb.org/browse/MDEV-25179
NOTE: Fixed in MariaDB: 10.5.9, 10.4.18, 10.3.28, 10.2.27
@@ -38871,7 +38871,7 @@ CVE-2021-2167 (Vulnerability in the Oracle Solaris
product of Oracle Systems (co
CVE-2021-2166 (Vulnerability in the MySQL Server product of Oracle MySQL
(component: ...)
- mariadb-10.5 1:10.5.10-1 (bug #988428)
- mariadb-10.3 <removed>
- [buster] - mariadb-10.3 <no-dsa> (Minor issue)
+ [buster] - mariadb-10.3 1:10.3.29-0+deb10u1
- mysql-8.0 <unfixed> (bug #987325)
- mysql-5.7 <removed>
NOTE: Fixed in MariaDB 10.5.10, 10.4.19, 10.3.29, 10.2.38
@@ -38909,7 +38909,7 @@ CVE-2021-2155 (Vulnerability in the Oracle One-to-One
Fulfillment product of Ora
CVE-2021-2154 (Vulnerability in the MySQL Server product of Oracle MySQL
(component: ...)
- mariadb-10.5 1:10.5.10-1 (bug #988428)
- mariadb-10.3 <removed>
- [buster] - mariadb-10.3 <no-dsa> (Minor issue)
+ [buster] - mariadb-10.3 1:10.3.29-0+deb10u1
- mysql-5.7 <removed>
NOTE: Fixed in MariaDB 10.5.10, 10.4.19, 10.3.29, 10.2.38
CVE-2021-2153 (Vulnerability in the Oracle Internet Expenses product of Oracle
E-Busi ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/80e7367cae5cdbdb4b525ac4e3d56484c93442b7
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/80e7367cae5cdbdb4b525ac4e3d56484c93442b7
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits