USN-2781-1: MySQL vulnerabilities partially also applies to MariaDB
Bug #1512241 reported by
Otto Kekäläinen
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
mariadb-10.0 (Ubuntu) |
Fix Released
|
Medium
|
Marc Deslauriers | ||
Vivid |
Fix Released
|
Medium
|
Marc Deslauriers | ||
Wily |
Fix Released
|
Medium
|
Marc Deslauriers | ||
Xenial |
Fix Released
|
Medium
|
Marc Deslauriers | ||
mariadb-5.5 (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned | ||
Vivid |
Invalid
|
Undecided
|
Unassigned |
Bug Description
The mentioned security notice also affect MariaDB and the latest release includes fixes.
I will produce a security release and upload it as a patch to this bug report.
Changed in mariadb-10.0 (Ubuntu): | |
status: | New → Triaged |
importance: | Undecided → Medium |
assignee: | nobody → Marc Deslauriers (mdeslaur) |
Changed in mariadb-10.0 (Ubuntu Vivid): | |
status: | New → Confirmed |
Changed in mariadb-10.0 (Ubuntu Wily): | |
status: | New → Confirmed |
Changed in mariadb-10.0 (Ubuntu Xenial): | |
status: | Triaged → Confirmed |
Changed in mariadb-10.0 (Ubuntu Wily): | |
importance: | Undecided → Medium |
Changed in mariadb-10.0 (Ubuntu Vivid): | |
importance: | Undecided → Medium |
assignee: | nobody → Marc Deslauriers (mdeslaur) |
Changed in mariadb-10.0 (Ubuntu Wily): | |
assignee: | nobody → Marc Deslauriers (mdeslaur) |
no longer affects: | mariadb-5.5 (Ubuntu Xenial) |
no longer affects: | mariadb-5.5 (Ubuntu Wily) |
Changed in mariadb-5.5 (Ubuntu Vivid): | |
status: | New → Invalid |
To post a comment you must log in.
The latest Oracle security notices and CVEs were about issues that have been fixed in MariaDB 10.0.17 to .22
See latest changelogs and prevous changelogs updated in retrospect in commit: http:// anonscm. debian. org/cgit/ pkg-mysql/ mariadb- 10.0.git/ commit/ ?h=ubuntu- 15.04&id= bbb953f102e98d1 a7141a621a12ffe 448ffce635
I've attached the diff that should be applied the previous debian/* contents. Diff is created with command
git diff ubuntu/ 10.0.20- 0ubuntu0. 15.04.1. .HEAD debian/* > 10.0.20- 0ubuntu0. 15.04.1. .10.0.22- 0ubuntu0. 15.04.1. debdiff
It seems the package mariadb-10.0 is no longer synced from Debian in newer releases 15.10 and 16.04 alpha. This same update should thus be applied on top of the 15.10 and 16.04 versions too.