Re: MariaDB security vulnerabilities

2022-02-22 Thread Anton Gladky
Dear Otto, thanks for providing this valuable information. Providing new binaries in LTS release can potentially break some stuff. But if both 10.1 and 10.3 can co-exist, it could be an option. Another problem is that 10.3 provides a new ABI (libmariadb19 instead of libmariadb18), so basically

Re: MariaDB security vulnerabilities

2022-02-22 Thread Otto Kekäläinen
Hi! On Mon, Feb 14, 2022 at 4:04 AM Markus Koschany wrote: > > Hello, > > Just a heads-up. New CVE have been reported for MariaDB 10.3. It is likely > that > 10.1 in Stretch is affected as well. Otto Kekäläinen (maintainer) is currently > investigating if it is feasible to backport a newer