Bug#1034889: mariadb: CVE-2022-47015

2023-05-15 Thread Salvatore Bonaccorso
Hi Otto, On Sun, May 14, 2023 at 10:17:06PM -0700, Otto Kekäläinen wrote: > Hi! > > New upstream import has been done and is pending at > https://salsa.debian.org/mariadb-team/mariadb-10.5/-/commits/bullseye > > Additionally I have >

Bug#1034889: mariadb: CVE-2022-47015

2023-05-14 Thread Otto Kekäläinen
Hi! New upstream import has been done and is pending at https://salsa.debian.org/mariadb-team/mariadb-10.5/-/commits/bullseye Additionally I have https://salsa.debian.org/mariadb-team/mariadb-10.5/-/merge_requests/14 (#1035949) pending review as we might want to include it in the same upload.

Bug#1034889: mariadb: CVE-2022-47015

2023-04-26 Thread Otto Kekäläinen
This will be fixed as part of next upstream maintenance release update in all versions of Debian and Ubuntu. I expect to do it in coming 1-2 weeks.

Bug#1034889: mariadb: CVE-2022-47015

2023-04-26 Thread Moritz Mühlenhoff
Source: mariadb X-Debbugs-CC: t...@security.debian.org Severity: normal Tags: security Hi, The following vulnerability was published for mariadb. CVE-2022-47015[0]: | MariaDB Server before 10.3.34 thru 10.9.3 is vulnerable to Denial of | Service. It is possible for function