Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Warning: Undefined array key "Description" in /var/www/www.linuxsecurity.com-443/html/lsadvisories/lsadvisories.php on line 220

Fedora 21: 2015-10831 Moderate: SSL Enforcement Issue in MariaDB 10.0.20

fedora
Calendar Grey July 10, 2015
Dist Fedora Esm H88
Recent updates to MariaDB on Fedora 21 have addressed CVE-2015-3152 vulnerabilities, enhancing overall security. Discover the specifics of these improvements and additional fixes introduced.
This is an update to most recent version 10.0.20, that also fixes CVE-2015-3152.

Summary

MariaDB is a community developed branch of MySQL.

MariaDB is a multi-user, multi-threaded SQL database server.

It is a client/server implementation consisting of a server daemon (mysqld)

and many different client programs and libraries. The base package

contains the standard MariaDB/MySQL client programs and generic MySQL files.

Update Information:

This is an update to most recent version 10.0.20, that also fixes CVE-2015-3152.

Change Log

* Tue Jun 23 2015 Honza Horak - 1:10.0.20-1 - Update to 10.0.20 * Wed Jun 3 2015 Dan Horák - 1:10.0.19-2 - Update lists of failing tests (jdornak) Related: #1149647 * Mon May 11 2015 Honza Horak - 1:10.0.19-1 - Update to 10.0.19 * Thu May 7 2015 Honza Horak - 1:10.0.18-1 - Update to 10.0.18 * Wed Mar 4 2015 Honza Horak - 1:10.0.17-1 - Rebase to version 10.0.17 * Wed Feb 18 2015 Matej Muzila - 1:10.0.16-3 - Enable tokudb * Tue Feb 10 2015 Honza Horak - 1:10.0.16-3 - Fix openssl_1 test * Wed Feb 4 2015 Jakub Dorňák - 1:10.0.16-2 - Include new certificate for tests - Update lists of failing tests Related: #1186110 * Tue Feb 3 2015 Jakub Dorňák - 1:10.0.16-9 - Rebase to version 10.0.16 Resolves: #1187895 * Tue Jan 6 2015 Honza Horak - 1:10.0.15-4 - Disable failing tests connect.mrr, connect.updelx2 on ppc and s390 * Mon Dec 22 2014 Honza Horak - 1:10.0.15-3 - Revert removing compat files, will do for F22 * Fri Dec 5 2014 Honza Horak - 1:10.0.15-2 - Rework usage of macros and remove some compatibility artefacts * Thu Nov 27 2014 Jakub Dorňák - 1:10.0.15-1 - Update to 10.0.15 * Thu Nov 20 2014 Jan Stanek - 1:10.0.14-8 - Applied upstream fix for mysql_config --cflags output. Resolves: #1160845

References


[ 1 ] Bug #1217506 - CVE-2015-3152 mysql: use of SSL/TLS can not be enforced in mysql client library (oCERT-2015-003, BACKRONYM) https://bugzilla.redhat.com/show_bug.cgi?id=1217506

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update mariadb' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
important
Lowest
Low
Medium
High
Critical

Name: mariadb
Product: Fedora 21
Version: 10.0.20
Release: 1.fc21
Summary: A community developed branch of MySQL

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here